During an external pentest – what a surprise – I found a WebLogic server with no interesting contents. I searched papers and tutorials about WebLogic hacking with little success. The public exploitation techniques resulted in only file reading.
more here.........http://blog.silentsignal.eu/2014/10/03/weblogic-undocumented-hacking/
more here.........http://blog.silentsignal.eu/2014/10/03/weblogic-undocumented-hacking/