CVE-2020-2883

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Apr 15, 2020
Updated: Jan 8, 2025

Summary

CVE-2020-2883 is a critical vulnerability affecting Oracle WebLogic Server versions 10.3.6.0.0, 12.1.3.0.0, 12.2.1.3.0, and 12.2.1.4.0. Unauthenticated attackers with network access can easily exploit this vulnerability via IIOP or T3, leading to a takeover of the Oracle WebLogic Server. The consequences of a successful attack include significant impacts on confidentiality, integrity, and availability, with a base CVSS score of 9.8. This vulnerability poses a severe threat, allowing attackers to gain control of impacted servers.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Oracle WebLogic Server

Affected Vendors

  • Oracle Corp