CVE-2020-2883
CVSS 3.1 Score 9.8 of 10 (high)
Details
Published Apr 15, 2020
Updated: Jan 8, 2025
Summary
CVE-2020-2883 is a critical vulnerability affecting Oracle WebLogic Server versions 10.3.6.0.0, 12.1.3.0.0, 12.2.1.3.0, and 12.2.1.4.0. Unauthenticated attackers with network access can easily exploit this vulnerability via IIOP or T3, leading to a takeover of the Oracle WebLogic Server. The consequences of a successful attack include significant impacts on confidentiality, integrity, and availability, with a base CVSS score of 9.8. This vulnerability poses a severe threat, allowing attackers to gain control of impacted servers.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Oracle WebLogic Server
Affected Vendors
- Oracle Corp