Citing evidence of active exploitation, the U.S. Cybersecurity and Infrastructure Security Agency (CISA) added a security issue affecting the Oracle WebLogic Server to the Known Exploited Vulnerabilities (KEV) database on Thursday.
The problem, identified as CVE-2017-3506 (CVSS score: 7.4), is related to an operating system (OS) command injection vulnerability that might be used to gain full control of vulnerable servers and gain unauthorized access.
A product of the Fusion Middleware suite, Oracle WebLogic Server, has an OS command injection vulnerability, according to CISA, which enables an attacker to execute arbitrary code using a carefully constructed HTTP request that contains a malicious XML document.
The China-based cryptojacking organization known as the 8220 Gang (aka Water Sigbin) has a history of using the vulnerability since early last year read more Oracle WebLogic Server OS Command Injection Flaw Under Active Attack.
Get up to date on the latest cybersecurity news and enhance your knowledge of cybersecurity with our thorough coverage of the dangers, breaches, and solutions.
