PromptRiskDBThreat intelligence atlas
AI Vulnerability Context

CVE-2017-3506 - Oracle WebLogic Server

Oracle WebLogic Server, a product within the Fusion Middleware suite, contains an OS command injection vulnerability that allows an attacker to execute arbitrary code via a specially crafted HTTP request that includes a malicious XML document.

AI Vulnerability ContextCISA KEVOracle

Record summary

A quick snapshot of what this page covers.

CISA KEVyesWhether CISA lists this as exploited.
Techniques0AI attack methods connected to this vulnerability.
Case studies0Examples where this vulnerability is mentioned.

Vulnerability status

How serious this vulnerability is and whether it is known to be exploited.

CISA KEV
CVE ID
CVE-2017-3506
Vendor/project
Oracle
Product
WebLogic Server
Vulnerability name
Oracle WebLogic Server OS Command Injection Vulnerability
Date added
2024-06-03
Due date
2024-06-24
Known ransomware campaign use
Unknown
CWE-78

Exploit context

What the vulnerability is about.

No description available. The source record only contains identifiers and metadata.

Source

Where this page information comes from.