¾ÅÓÎÀϸç

¾ÅÓÎÀϸç

¾ÅÓÎÀÏ¸ç¿Æ¼¼

  • »ù´¡ÉèÊ©Çå¾²

    »ù´¡ÉèÊ©Çå¾²
  • Êý¾ÝÇå¾²

    Êý¾ÝÇå¾²
  • ÔÆÅÌËãÇå¾²

    ÔÆÅÌËãÇå¾²
  • AIÇå¾²

    AIÇå¾²
  • ¹¤Òµ»¥ÁªÍøÇå¾²

    ¹¤Òµ»¥ÁªÍøÇå¾²
  • ÎïÁªÍøÇå¾²

    ÎïÁªÍøÇå¾²
  • ÐÅÏ¢ÊÖÒÕÓ¦ÓÃÁ¢Òì

    ÐÅÏ¢ÊÖÒÕÓ¦ÓÃÁ¢Òì
  • ËùÓвúÆ·

    ËùÓвúÆ·
  • ËùÓнâ¾ö¼Æ»®

    ËùÓнâ¾ö¼Æ»®

»ù´¡ÉèÊ©Çå¾²


  • Õþ¸®

    Õþ¸®
  • ÔËÓªÉÌ

    ÔËÓªÉÌ
  • ½ðÈÚ

    ½ðÈÚ
  • ÄÜÔ´

    ÄÜÔ´
  • ½»Í¨

    ½»Í¨
  • ÆóÒµ

    ÆóÒµ
  • ¿Æ½ÌÎÄÎÀ

    ¿Æ½ÌÎÄÎÀ

  • ¾ÅÓÎÀϸçÔÆ ¾ÅÓÎÀϸçÔÆ
  • ¾ÅÓÎÀϸçÍþвÇ鱨ÖÐÐÄNTI ¾ÅÓÎÀϸçÍþвÇ鱨ÖÐÐÄNTI
  • TechWorldÊÖÒÕ¼ÎÄ껪 TechWorldÊÖÒÕ¼ÎÄ껪
  • ±±¾©¾ÅÓÎÀÏ¸ç¹«Òæ»ù½ð»á ±±¾©¾ÅÓÎÀÏ¸ç¹«Òæ»ù½ð»á
  • ÊÖÒÕ²©¿Í ÊÖÒÕ²©¿Í
  • Àֳɰ¸Àý Àֳɰ¸Àý

ÏàÖúͬ°éÉó²é¸ü¶à >

ÏàÖúͬ°é¶¯Ì¬

³ÉΪÏàÖúͬ°é

  • ¾ÅÓÎÀϸçÔÆ ¾ÅÓÎÀϸçÔÆ
  • ¾ÅÓÎÀϸçÍþвÇ鱨ÖÐÐÄNTI ¾ÅÓÎÀϸçÍþвÇ鱨ÖÐÐÄNTI
  • TechWorldÊÖÒÕ¼ÎÄ껪 TechWorldÊÖÒÕ¼ÎÄ껪
  • ±±¾©¾ÅÓÎÀÏ¸ç¹«Òæ»ù½ð»á ±±¾©¾ÅÓÎÀÏ¸ç¹«Òæ»ù½ð»á
  • ÊÖÒÕ²©¿Í ÊÖÒÕ²©¿Í
  • Àֳɰ¸Àý Àֳɰ¸Àý

ÊÖÒÕÖ§³ÖÉó²é¸ü¶à >

²úÆ·Ö§³Ö

  • ¾ÅÓÎÀϸçÔÆ ¾ÅÓÎÀϸçÔÆ
  • ¾ÅÓÎÀϸçÍþвÇ鱨ÖÐÐÄNTI ¾ÅÓÎÀϸçÍþвÇ鱨ÖÐÐÄNTI
  • TechWorldÊÖÒÕ¼ÎÄ껪 TechWorldÊÖÒÕ¼ÎÄ껪
  • ±±¾©¾ÅÓÎÀÏ¸ç¹«Òæ»ù½ð»á ±±¾©¾ÅÓÎÀÏ¸ç¹«Òæ»ù½ð»á
  • ÊÖÒÕ²©¿Í ÊÖÒÕ²©¿Í
  • Àֳɰ¸Àý Àֳɰ¸Àý

·µ»ØÁбí

Weblogic ·´ÐòÁл¯Ô¶³Ì´úÂëÖ´ÐÐÎó²î(CVE-2018-2628) ÊÖÒÕÆÊÎöÓë·À»¤¼Æ»®

2018-04-18

Ðû²¼Õߣº¾ÅÓÎÀÏ¸ç¿Æ¼¼

×ÛÊö


ÍâµØÊ±¼ä4ÔÂ17ÈÕ£¬±±¾©Ê±¼ä4ÔÂ18ÈÕÆÆÏþ£¬Oracle¹Ù·½Ðû²¼ÁË4Ô·ݵÄÒªº¦²¹¶¡¸üÐÂCPU£¨Critical Patch Update£©ÆäÖаüÀ¨Ò»¸ö¸ßΣµÄWeblogic·´ÐòÁл¯Îó²î(CVE-2018-2628)£¬Í¨¹ý¸ÃÎó²î£¬¹¥»÷Õß¿ÉÒÔÔÚδÊÚȨµÄÇéÐÎÏÂÔ¶³ÌÖ´ÐÐí§Òâ´úÂë¡£


²Î¿¼Á´½Ó£º

http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html


Îó²îÓ°Ïì¹æÄ£

l  Weblogic 10.3.6.0

l  Weblogic 12.1.3.0

l  Weblogic 12.2.1.2

l  Weblogic 12.2.1.3

 

ƾ֤NTI£¨¾ÅÓÎÀϸçÌ¬ÊÆ¸Ð֪ƽ̨£©·´ÏìµÄЧ¹û£¬ÔÚÈ«Çò¹æÄ£ÄÚ¶Ô»¥ÁªÍø¿ª·Åweblogic·þÎñµÄ×ʲúÊýÄ¿¶à´ï19229£¬ÆäÖйéÊôÖйúµØÇøµÄÊÜÓ°Ïì×ʲúΪ1787¡£

    

¾ÅÓÎÀϸ硤(Öйú)¾ãÀÖ²¿¹Ù·½ÍøÕ¾

       

¶ÔÓ¦Öйú¹éÊô¸÷Ê¡ÊеĵÄÂþÑÜÇéÐÎÈçÏÂͼËùʾ£¬±±¾©µØÇø¿ª·ÅµÄ×ʲúÊýÄ¿½Ï¶à¡£


¾ÅÓÎÀϸ硤(Öйú)¾ãÀÖ²¿¹Ù·½ÍøÕ¾

ÊÖÒÕ·À»¤¼Æ»®

Óû§×Ô²é

ʹÓÃÈçÏÂÏÂÁî¼ì²éWeblogic°æ±¾ÊÇ·ñÔÚÊÜÓ°Ïì¹æÄ£ÄÚ£º

$ cd /lopt/bea92sp2/weblogic92/server/lib

$java -cp weblogic.jar weblogic.version

ͬʱ¼ì²éÊÇ·ñ¶ÔÍ⿪·ÅÁË7001¶Ë¿Ú£¨WeblogicĬÈ϶˿ڣ©¡£


¹Ù·½ÐÞ¸´¼Æ»®

¹Ù·½ÒѾ­ÔÚ½ñÈÕÐû²¼µÄÒªº¦²¹¶¡¸üÐÂÖÐÐÞ¸´Á˸ÃÎó²î£¬ÇëÓû§ÊµÊ±ÏÂÔØ¸üоÙÐзÀ»¤¡£

²Î¿¼Á´½Ó£º

http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html

×¢£ºOracle¹Ù·½²¹¶¡ÐèÒªÓû§³ÖÓÐÕý°æÈí¼þµÄÔÊÐíÕ˺Å£¬Ê¹ÓøÃÕ˺ÅÉϰ¶https://support.oracle.comºó£¬¿ÉÒÔÏÂÔØ×îв¹¶¡¡£


ÔÝʱ½â¾ö¼Æ»®

CVE-2018-2628Îó²îʹÓõĵÚÒ»²½ÊÇÓëWeblogic·þÎñÆ÷¿ª·ÅÔÚ·þÎñ¶Ë¿ÚÉϵÄT3·þÎñ½¨ÉèsocketÅþÁ¬£¬¿Éͨ¹ý¿ØÖÆT3ЭÒéµÄ»á¼ûÀ´ÔÝʱ×è¶Ï¹¥»÷ÐÐΪ¡£WebLogic Server ÌṩÁËÃûΪweblogic.security.net.ConnectionFilterImpl µÄĬÈÏÅþÁ¬É¸Ñ¡Æ÷¡£´ËÅþÁ¬É¸Ñ¡Æ÷½ÓÊÜËùÓд«ÈëÅþÁ¬£¬¿Éͨ¹ý´ËÅþÁ¬É¸Ñ¡Æ÷ÉèÖùæÔò£¬¶Ôt3¼°t3sЭÒé¾ÙÐлá¼û¿ØÖÆ¡£¡£

1.   ½øÈëWeblogic¿ØÖÆÌ¨£¬ÔÚbase_domainµÄÉèÖÃÒ³ÃæÖУ¬½øÈë¡°Çå¾²¡±Ñ¡Ïî¿¨Ò³Ãæ£¬µã»÷¡°É¸Ñ¡Æ÷¡±£¬½øÈëÅþÁ¬É¸Ñ¡Æ÷ÉèÖá£


¾ÅÓÎÀϸ硤(Öйú)¾ãÀÖ²¿¹Ù·½ÍøÕ¾


2.   ÔÚÅþÁ¬É¸Ñ¡Æ÷ÖÐÊäÈ룺weblogic.security.net.ConnectionFilterImpl£¬ÔÚÅþÁ¬É¸Ñ¡Æ÷¹æÔòÖÐÊäÈ룺* * 7001 deny t3 t3s


¾ÅÓÎÀϸ硤(Öйú)¾ãÀÖ²¿¹Ù·½ÍøÕ¾


3.   ÉúÑĺó¹æÔò¼´¿ÉÉúЧ£¬ÎÞÐèÖØÐÂÆô¶¯¡£


¾ÅÓÎÀϸ硤(Öйú)¾ãÀÖ²¿¹Ù·½ÍøÕ¾

 

ÅþÁ¬É¸Ñ¡Æ÷¹æÔòÃûÌÃÈ磺target localAddress localPort action protocols£¬ÆäÖУº

l  target Ö¸¶¨Ò»¸ö»ò¶à¸öҪɸѡµÄ·þÎñÆ÷¡£

l  localAddress ¿É½ç˵·þÎñÆ÷µÄÖ÷»úµØµã¡£(ÈôÊÇÖ¸¶¨ÎªÒ»¸öÐǺŠ(*)£¬Ôò·µ»ØµÄÆ¥ÅäЧ¹û½«ÊÇËùÓÐÍâµØ IP µØµã¡£)

l  localPort ½ç˵·þÎñÆ÷ÕýÔÚ¼àÌýµÄ¶Ë¿Ú¡£(ÈôÊÇÖ¸¶¨ÁËÐǺÅ£¬ÔòÆ¥Åä·µ»ØµÄЧ¹û½«ÊÇ·þÎñÆ÷ÉÏËùÓпÉÓõĶ˿Ú)¡£

l  action Ö¸¶¨ÒªÖ´ÐеIJÙ×÷¡£(Öµ±ØÐèΪ¡°allow¡±»ò¡°deny¡±¡£)

l  protocols ÊÇÒª¾ÙÐÐÆ¥ÅäµÄЭÒéÃûÁбí¡£(±ØÐèÖ¸¶¨ÏÂÁÐÆäÖÐÒ»¸öЭÒ飺http¡¢https¡¢t3¡¢t3s¡¢giop¡¢giops¡¢dcom »ò ftp¡£) ÈôÊÇδ½ç˵ЭÒ飬ÔòËùÓÐЭÒé¶¼½«ÓëÒ»¸ö¹æÔòÆ¥Åä¡£

 

¾ÅÓÎÀÏ¸ç¿Æ¼¼·À»¤½¨Òé

¾ÅÓÎÀÏ¸ç¿Æ¼¼¼ì²âÀà²úÆ·Óë·þÎñ

1¡¢¹«Íø×ʲú¿ÉʹÓþÅÓÎÀϸçÔÆ ½ôÆÈÎó²îÔÚÏß¼ì²â£¬¼ì²âµØµãÈçÏ£º

https://cloud.nsfocus.com/#/krosa/views/initcdr/productandservice?page_id=12


2¡¢ÄÚÍø×ʲú¿ÉÒÔʹÓþÅÓÎÀÏ¸ç¿Æ¼¼µÄÈëÇÖ¼ì²âϵͳ(IDS)£¬Ô¶³ÌÇå¾²ÆÀ¹Àϵͳ£¨RSAS V6£©ºÍWebÓ¦ÓÃÎó²îɨÃèϵͳ£¨WVSS£© ¾ÙÐмì²â¡£

  • ÈëÇÖ¼ì²âϵͳ£¨IDS£©

http://update.nsfocus.com/update/listIds

  • Ô¶³ÌÇå¾²ÆÀ¹Àϵͳ£¨RSAS V6£©

http://update.nsfocus.com/update/listRsasDetail/v/vulweb

  • WebÓ¦ÓÃÎó²îɨÃèϵͳ£¨WVSS£©http://update.nsfocus.com/update/listWvssDetail/v/6/t/plg

ͨ¹ýÉÏÊöÁ´½Ó£¬Éý¼¶ÖÁ×îа汾¼´¿É¾ÙÐмì²â


ʹÓþÅÓÎÀÏ¸ç¿Æ¼¼·À»¤Àà²úÆ·£¨IPS/NF£©¾ÙÐзÀ»¤£º

  • ÈëÇÖ·À»¤ÏµÍ³£¨IPS£©

http://update.nsfocus.com/update/listIps

  • ÏÂÒ»´ú·À»ðǽϵͳ£¨NF£©

http://update.nsfocus.com/update/listNf

ͨ¹ýÉÏÊöÁ´½Ó£¬Éý¼¶ÖÁ×îа汾¼´¿É¾ÙÐзÀ»¤£¡


TRGÇ徲ƽ̨ÌṩӦ¼±ÏìÓ¦ÊÖ²á

1. TSA£¨¾ÅÓÎÀϸçÌ¬ÊÆ¸Ð֪ƽ̨£©

1.1 Ìí¼Ó¡°weblogicÎó²î¹¥»÷ʵÑ顱ÊÂÎñ¹æÔò£º


½øÈëBSAÌ¬ÊÆ¸ÐÖªÖ÷Ò³£¬½øÈë¹æÔòÒýÇæAPP£¬Èçͼ1.1.


¾ÅÓÎÀϸ硤(Öйú)¾ãÀÖ²¿¹Ù·½ÍøÕ¾


ͼ1.1½øÈë¹æÔòÒýÇæAPP

 

1.2 Ð½¨¹æÔò


¾ÅÓÎÀϸ硤(Öйú)¾ãÀÖ²¿¹Ù·½ÍøÕ¾


ͼ 1.2 Ð½¨¹æÔò


1.3 ÔÙн¨Ò³Ãæ


¹æÔòģʽ£º×¨¼Òģʽ

¹æÔò·ÖÀà£ºÍøÂçÈëÇÖ¹æÔò

¹æÔòsql£º

select sip dip sum(last_times) as atk_count sip dip min(timestamp) as start_time max(timestamp) as end_time concat_agg(related_id_list) as related_id_list

from internal_app_bsaips.ipslog

where rule_id in (2417424022236142307421757217582145629116303122368563299232676262760689663446163666197661896619560862)

group by sip dip


¾ÅÓÎÀϸ硤(Öйú)¾ãÀÖ²¿¹Ù·½ÍøÕ¾


ͼ1.3 Ð½¨¹æÔò-ר¼ÒģʽÌîд

 

1.4 µã»÷ÏÂÒ»²½£¬·ºÆð¹æÔòÊôÐÔÉèÖÃÒ³Ãæ


Ãû³Æ£ºweblogicÎó²î¹¥»÷ʵÑé

Ç徲Ʒ¼¶£ºÖÐ

ÊÂÎñ½×¶Î£ºÕì²é

³¬Ê±Ê±¼ä£º1800£¨Ä¬ÈÏÖµ£©

Ò»Á¬Ê±¼ä£º3600£¨Ä¬ÈÏÖµ£©

ºÏ²¢ÊôÐÔ£ºsip£¬dip

ÊÂÎñÀàÐÍ£ºÏµÍ³ÈëÇÖÊÂÎñ- Îó²î¹¥»÷

¹æÔòÐÎò£º¸ÃÊÂÎñÊǹ¥»÷Õß¶Ôweblogic·þÎñÆ÷Îó²î×ö¹¥»÷ʵÑé¡£

¹æÔò½¨Ò飺ÈôÊǹ¥»÷ÌᳫÕßΪÎÒ·½×ʲú£¬Ôò˵Ã÷¸Ã×ʲúÒÑʧÏÝ¡£²»È»£¬Èç±»¹¥»÷ϵͳΪÎÒ·½×ʲú£¬²¢ÇÒ°²ÅÅÓÐweblogic·þÎñ£¬ÇëÈ·ÈÏÊǸÃ×ʲúÊÇ·ñ±£´æÊÂÎñÏêÇéÖеÄÎó²î¡£


¾ÅÓÎÀϸ硤(Öйú)¾ãÀÖ²¿¹Ù·½ÍøÕ¾


ͼ1.4 Ð½¨¹æÔò-¹æÔòÊôÐÔÉèÖÃ

 

µã»÷Íê³É£¬Íê³É¸Ã¹æÔòÉèÖá£


1.5 ÔÚ¹æÔòÁбíÖÐʹ֮ÉúЧ


¾ÅÓÎÀϸ硤(Öйú)¾ãÀÖ²¿¹Ù·½ÍøÕ¾


ͼ1.5 Ê¹¹æÔòÉúЧ

2. ESP£¨¾ÅÓÎÀϸçÆóÒµÇ徲ƽ̨£©

2.1 Ìí¼Ó¡°weblogicÎó²î¹¥»÷ʵÑ顱ÊÂÎñ¹æÔò


·­¿ªESP¾ÅÓÎÀϸçÆóÒµÇ徲ƽ̨£¬½øÈë Á¿»¯ÆÊÎö-> ÊÂÎñÆÊÎö-> ÊÂÎñ¹æÔò£¬µã»÷¡°½¨Éè¹æÔò¡±£¬Èçͼ2.1Ëùʾ£¬µ¯³öÈçͼ2.2ËùʾµÄ½¨Éè¹æÔò´°¿Ú¡£


¾ÅÓÎÀϸ硤(Öйú)¾ãÀÖ²¿¹Ù·½ÍøÕ¾


ͼ2.1 Ñ¡Ôñ½¨Éè¹æÔò

 

2.2 ÔÚ[½¨Éè¹æÔò->»ù±¾ÉèÖÃ]ÖÐÌîÈëÒÔÏÂÐÅÏ¢


¹æÔòÃû³Æ£ºweblogicÎó²î¹¥»÷ʵÑé

ÈÕÖ¾ÀàÐÍ£ºÈëÇÖ·À»¤ÈÕÖ¾

´°¿ÚÉèÖ㺿Õȱ£¨Ä¬ÈÏ£©

¹æÔòÐÎò£º¸ÃÊÂÎñÊǹ¥»÷Õß¶Ôweblogic·þÎñÆ÷Îó²î×ö¹¥»÷ʵÑé¡£ÈôÊǹ¥»÷ÌᳫÕßΪÎÒ·½×ʲú£¬Ôò˵Ã÷¸Ã×ʲúÒÑʧÏÝ¡£²»È»£¬Èç±»¹¥»÷ϵͳΪÎÒ·½×ʲú£¬²¢ÇÒ°²ÅÅÓÐweblogic·þÎñ£¬ÇëÈ·ÈÏÊǸÃ×ʲúÊÇ·ñ±£´æÊÂÎñÏêÇéÖеÄÎó²î¡£


¾ÅÓÎÀϸ硤(Öйú)¾ãÀÖ²¿¹Ù·½ÍøÕ¾


ͼ2.2 ½¨Éè¹æÔò-»ù±¾ÉèÖÃ


2.3 µã»÷ÏÂÒ»²½£¬ÔÚ[½¨Éè¹æÔò->½¨Éè¹æÔò]ÖÐÌîÈëÒÔÏÂÐÅÏ¢


Ñ¡ÖÐ[¹ýÂËÌõ¼þ(where)]

[¸æ¾¯ÊÂÎñ¹æÔò]ÊôÐÔin(2417424022236142307421757217582145629116303122368563299232676262760689663446163666197661896619560862)

 

¾ÅÓÎÀϸ硤(Öйú)¾ãÀÖ²¿¹Ù·½ÍøÕ¾


ͼ2.3 ½¨Éè¹æÔò-¹æÔòÉèÖÃ

 

2.4 µã»÷ÏÂÒ»²½£¬ÔÚ[½¨Éè¹æÔò->ÊÂÎñÉèÖÃ]ÖÐÌîÈëÒÔÏÂÐÅÏ¢


ÊÂÎñÀàÐÍ£º¹¥»÷ÈëÇÖ£¨Ö»Ê¹ÓøÃ×°±¸¸æ¾¯²»¿ÉÈ·ÈϹ¥»÷ÊÇ·ñÀֳɣ¬Ö»ÄÜÅжÏÊÇÕë¶ÔϵͳÖпÉÄܱ£´æµÄweblogic·þÎñÎó²îµÄ¹¥»÷ʵÑ飩

Σº¦Æ·¼¶£º3


¾ÅÓÎÀϸ硤(Öйú)¾ãÀÖ²¿¹Ù·½ÍøÕ¾


ͼ2.4 ½¨Éè¹æÔò-ÊÂÎñÉèÖÃ

 

2.5 µã»÷½¨É裬ÍêªϰÔò½¨Éè


¾ÅÓÎÀϸ硤(Öйú)¾ãÀÖ²¿¹Ù·½ÍøÕ¾


ͼ2.5 ¹æÔò½¨ÉèÍê³ÉºóЧ¹û


3. TAMа汾£¨¾ÅÓÎÀϸçÈ«Á÷Á¿ÆÊÎöƽ̨£©

Ìí¼Ó¡°weblogicÎó²î¹¥»÷ʵÑ顱ÊÂÎñ¹æÔò


3.1 ½øÈëÈ«Á÷Á¿ÊÂÎñ¹æÔòÉèÖÃÎļþÎļþĿ¼(/home/bsauser/BSA/apps/bsa_tam2/conf)£¬±¸·Ýmergeconf.xmlÎļþ£¬È»ºóʹÓÃvi·­¿ªmergeconf.xmlÎļþ


¾ÅÓÎÀϸ硤(Öйú)¾ãÀÖ²¿¹Ù·½ÍøÕ¾


ͼ3.1·­¿ªÈ«Á÷Á¿ÊÂÎñ¹æÔòÉèÖÃÎļþ

 

3.2 ÓÃutf-8±àÂëÃûÌõı༭Æ÷·­¿ª¡°È«Á÷Á¿Æ½Ì¨¹æÔò_weblogicÎó²î¹¥»÷ʵÑéÊÂÎñ.xml¡±£¬¸´ÖÆÆäÖеÄÄÚÈݲåÈëµ½rules½ÚµãÖУ¬²¢¼á³ÖÍ˳ö£¬Ð¹æÔò×Ô¶¯ÉúЧ¡£


¾ÅÓÎÀϸ硤(Öйú)¾ãÀÖ²¿¹Ù·½ÍøÕ¾


ͼ3.2²åÈëйæÔòµ½rules½Úµã

»¥ÁªÍø×ʲúÓ°ÏìÅŲé

¾ÅÓÎÀÏ¸ç¿Æ¼¼ÍþвÇ鱨ÖÐÐÄÌṩ¶Ô»¥ÁªÍø¿ª·ÅÍøÂç×ʲúÐÅÏ¢Éó²éµÄ¹¦Ð§£¬ÆóÒµÓû§¿Éͨ¹ýÔÚNTIÉϼìË÷×ÔÓÐ×ʲúÐÅÏ¢¶Ë¿Ú¿ª·ÅÇéÐΣ¬Éó²éÆóÒµ×ʲúÊÇ·ñÊÜ´ËÎó²îÓ°Ïì¡£


¾ÅÓÎÀϸ硤(Öйú)¾ãÀÖ²¿¹Ù·½ÍøÕ¾


¾ÅÓÎÀÏ¸ç¿Æ¼¼ÍþвÇ鱨ÖÐÐÄΪÆóÒµ¿Í»§Ìṩ»¥ÁªÍø×ʲúºË²é·þÎñ£¬Ê¹µÃÆóÒµ¿Í»§Äܹ»ÊµÊ±ÕÆÎÕ×ÔÉí×ʲúµÄÇå¾²Ì¬ÊÆÒÔ¼°×ʲú±ä»»ÇéÐΣ¬·þÎñÏêÇé¿É×Éѯ£ºNTI@nsfocus.com£¬»òÕß×Éѯ¶ÔÓ¦µÄ¿Í»§Ë¾Àí¡£

ÊÖÒÕÆÊÎö

Îó²î¼òÎö

¸Ã·þÎñ»á½â°üObject½á¹¹£¬Í¨¹ýÒ»²½²½µÄreadObjectÈ¥µÚ¶þ²½·þÎñÆ÷ÉϵÄ1099¶Ë¿ÚÇëÇó¶ñÒâ·â×°µÄ´úÂë¡£


¾ÅÓÎÀϸ硤(Öйú)¾ãÀÖ²¿¹Ù·½ÍøÕ¾


È»ºóÔÚÍâµØµ¯³öÅÌËãÆ÷¡£


¾ÅÓÎÀϸ硤(Öйú)¾ãÀÖ²¿¹Ù·½ÍøÕ¾


WeblogicÒѾ­½«»¥ÁªÍøÌ»Â¶µÄPoC¶¼ÒѾ­¼ÓÈëÁ˺ÚÃûµ¥£¬ÈôÊÇÒªÈÆ¹ýËûµÄºÚÃûµ¥µÄÏÞÖÆ¾ÍÖ»ÄÜ×Ô¼ºÏÂÊֽṹ¡£À´¿´¿´InboundMsgAbbrevÖÐresolveProxyClassµÄʵÏÖ£¬resolveProxyClassÊÇ´¦Öóͷ£rmi½Ó¿ÚÀàÐ͵Ä£¬Ö»ÅжÏÁËjava.rmi.registry.Registry£¬×ÅÊµËæ±ãÕÒÒ»¸örmi½Ó¿Ú¼´¿ÉÈÆ¹ý¡£


protected Class resolveProxyClass(String[] interfaces) throws IOException ClassNotFoundException {

   String[] arr$ = interfaces;

   int len$ = interfaces.length;

 

   for(int i$ = 0; i$ < len$; ++i$) {

      String intf = arr$[i$];

      if(intf.equals("java.rmi.registry.Registry")) {

         throw new InvalidObjectException("Unauthorized proxy deserialization");

      }

   }

 

   return super.resolveProxyClass(interfaces);

}

 

 

Éù Ã÷

±¾Ç徲ͨ¸æ½öÓÃÀ´ÐÎò¿ÉÄܱ£´æµÄÇå¾²ÎÊÌ⣬¾ÅÓÎÀÏ¸ç¿Æ¼¼²»Îª´ËÇ徲ͨ¸æÌṩÈκΰü¹Ü»òÔÊÐí¡£ÓÉÓÚÈö²¥¡¢Ê¹ÓôËÇ徲ͨ¸æËùÌṩµÄÐÅÏ¢¶øÔì³ÉµÄÈκÎÖ±½Ó»òÕß¼ä½ÓµÄЧ¹û¼°Ëðʧ£¬¾ùÓÉʹÓÃÕß×Ô¼ºÈÏÕæ£¬¾ÅÓÎÀÏ¸ç¿Æ¼¼ÒÔ¼°Ç徲ͨ¸æ×÷Õß²»Îª´Ë¼ç¸ºÈκÎÔðÈΡ£¾ÅÓÎÀÏ¸ç¿Æ¼¼ÓµÓжԴËÇ徲ͨ¸æµÄÐÞ¸ÄÏ¢ÕùÊÍȨ¡£ÈçÓû×ªÔØ»òÈö²¥´ËÇ徲ͨ¸æ£¬±ØÐè°ü¹Ü´ËÇ徲ͨ¸æµÄÍêÕûÐÔ£¬°üÀ¨°æÈ¨ÉùÃ÷µÈËùÓÐÄÚÈÝ¡£Î´¾­¾ÅÓÎÀÏ¸ç¿Æ¼¼ÔÊÐí£¬²»µÃí§ÒâÐ޸ĻòÕßÔö¼õ´ËÇ徲ͨ¸æÄÚÈÝ£¬²»µÃÒÔÈκη½·¨½«ÆäÓÃÓÚÉÌҵĿµÄ¡£



?

ÄúµÄÁªÏµ·½·¨

*ÐÕÃû
*µ¥Î»Ãû³Æ
*ÁªÏµ·½·¨
*ÑéÖ¤Âë ¾ÅÓÎÀϸ硤(Öйú)¾ãÀÖ²¿¹Ù·½ÍøÕ¾
Ìá½»µ½ÓÊÏä

¹ºÖÃÈÈÏß

  • ¹ºÖÃ×Éѯ:

    400-818-6868-1

Ìá½»ÏîÄ¿ÐèÇó

½Ó´ý¼ÓÈë¾ÅÓÎÀÏ¸ç¿Æ¼¼£¬³ÉΪÎÒÃǵÄÏàÖúͬ°é£¡
  • *ÇëÐÎòÄúµÄÐèÇó
  • *×îÖÕ¿Í»§Ãû³Æ
  • *ÏîÄ¿Ãû³Æ
  • Äú¸ÐÐËȤµÄ²úÆ·
  • ÏîĿԤËã
ÄúµÄÁªÏµ·½·¨
  • *ÐÕÃû
  • *ÁªÏµµç»°
  • *ÓÊÏä
  • *Ö°Îñ
  • *¹«Ë¾
  • *¶¼»á
  • *ÐÐÒµ
  • *ÑéÖ¤Âë ¾ÅÓÎÀϸ硤(Öйú)¾ãÀÖ²¿¹Ù·½ÍøÕ¾
  • Ìá½»µ½ÓÊÏä
¾ÅÓÎÀϸ硤(Öйú)¾ãÀÖ²¿¹Ù·½ÍøÕ¾
¾ÅÓÎÀϸ硤(Öйú)¾ãÀÖ²¿¹Ù·½ÍøÕ¾

·þÎñÖ§³Ö

ÖÇÄܿͷþ
ÖÇÄܿͷþ
¹ºÖÃ/ÊÛºóÊÖÒÕÎÊÌâ
Ã˹ܼÒ-ÊÛºó·þÎñϵͳ
Ã˹ܼÒ-ÊÛºó·þÎñϵͳ
ÔÚÏßÌáµ¥|ÖÇÄÜÎÊ´ð|֪ʶ¿â
Ö§³ÖÈÈÏß
Ö§³ÖÈÈÏß
400-818-6868
¾ÅÓÎÀÏ¸ç¿Æ¼¼ÉçÇø
¾ÅÓÎÀÏ¸ç¿Æ¼¼ÉçÇø
×ÊÁÏÏÂÔØ|ÔÚÏßÎÊ´ð|ÊÖÒÕ½»Á÷
΢²©
΢²©

΢²©

΢ÐÅ
΢ÐÅ

΢ÐÅ

BÕ¾
BÕ¾

BÕ¾

¶¶Òô
¶¶Òô

¶¶Òô

ÊÓÆµºÅ
ÊÓÆµºÅ

ÊÓÆµºÅ

·þÎñÈÈÏß

400-818-6868

·þÎñʱ¼ä

7*24Сʱ

? 2026 NSFOCUS ¾ÅÓÎÀÏ¸ç¿Æ¼¼ www.nsfocus.com All Rights Reserved . ¾©¹«Íø°²±¸ 11010802021605ºÅ ¾©ICP±¸14004349ºÅ ¾©ICPÖ¤110355ºÅ

ÍøÕ¾µØÍ¼