RULE(RULE ID:323063)

Rule General Information
Release Date: 2019-09-10
Rule Name: Oracle WebLogic Server Node Manager Command Execution Vulnerability (CVE-2010-0073)
Severity:
CVE ID:
Rule Protection Details
Description: Unspecified vulnerability in the WebLogic Server in Oracle WebLogic Server 7.0 SP7, 8.1 SP6, 9.0, 9.1, 9.2 MP3, 10.0 MP2, and 10.3.2 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.
Impact: An attacker can execute arbitrary command via a successful exploit in the context of the vulnerable software.
Affected OS: Windows, Linux, FreeBSD, Solaris, Other Unix, Network Device, Mac OS, iOS, Android, Others
Reference: http://www.oracle.com/technology/deploy/security/alerts/alert-cve-2010-0073.html
http://www.us-cert.gov/cas/techalerts/TA10-103B.html
http://www.vupen.com/english/advisories/2010/0216
Solutions
Refer to the announcement or patch by the vendor: http://www.oracle.com/index.html