STIGQter STIGQter: STIG Summary: Oracle WebLogic Server 12c Security Technical Implementation Guide Version: 2 Release: 1 Benchmark Date: 23 Apr 2021:

Oracle WebLogic must utilize automated mechanisms to prevent program execution on the information system.

DISA Rule

SV-235963r628667_rule

Vulnerability Number

V-235963

Group Title

SRG-APP-000516-AS-000237

Rule Version

WBLC-03-000129

Severity

CAT III

CCI(s)

Weight

10

Fix Recommendation

1. Access AC
2. From 'Domain Structure', select the top-level domain
3. Select 'Configuration' tab -> 'General' tab
4. Check 'Production Mode' checkbox. Click 'Save'
5. Restart all servers

Check Contents

1. Access AC
2. From 'Domain Structure', select the top-level domain
3. Select 'Configuration' tab -> 'General' tab
4. Ensure 'Production Mode' checkbox is selected

If the 'Production Mode' checkbox is not selected, this is a finding.

Vulnerability Number

V-235963

Documentable

False

Rule Version

WBLC-03-000129

Severity Override Guidance

1. Access AC
2. From 'Domain Structure', select the top-level domain
3. Select 'Configuration' tab -> 'General' tab
4. Ensure 'Production Mode' checkbox is selected

If the 'Production Mode' checkbox is not selected, this is a finding.

Check Content Reference

M

Target Key

5282

Comments