CVE-2014-4253
published 2014-07-17CVE-2014-4253: Unspecified vulnerability in the Oracle WebLogic Server component in Oracle Fusion Middleware 10.0.2.0, 10.3.6.0, 12.1.1.0, and 12.1.2.0 allows remote…
PriorityP429medium5CVSS 2.0
AVNACLAuNCNINAP
EPSS
3.76%
88.8th percentile
Unspecified vulnerability in the Oracle WebLogic Server component in Oracle Fusion Middleware 10.0.2.0, 10.3.6.0, 12.1.1.0, and 12.1.2.0 allows remote attackers to affect availability via vectors related to WebLogic Server JVM.
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| oracle | fusion_middleware | — | — |
| oracle | fusion_middleware | — | — |
| oracle | fusion_middleware | — | — |
| oracle | fusion_middleware | — | — |
CVSS provenance
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
vendor_redhat7.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-rmfj-5qj3-3hmx: Unspecified vulnerability in the Oracle WebLogic Server component in Oracle Fusion Middleware 10
ghsa_unreviewed·2022-05-14
CVE-2014-4253 [MEDIUM] GHSA-rmfj-5qj3-3hmx: Unspecified vulnerability in the Oracle WebLogic Server component in Oracle Fusion Middleware 10
Unspecified vulnerability in the Oracle WebLogic Server component in Oracle Fusion Middleware 10.0.2.0, 10.3.6.0, 12.1.1.0, and 12.1.2.0 allows remote attackers to affect availability via vectors related to WebLogic Server JVM.
Red Hat
openshift-origin-broker: default password creation
vendor_redhat·2014-05-14·CVSS 7.5
CVE-2014-0234 [HIGH] CWE-798 openshift-origin-broker: default password creation
openshift-origin-broker: default password creation
The default configuration of broker.conf in Red Hat OpenShift Enterprise 2.x before 2.1 has a password of "mooo" for a Mongo account, which allows remote attackers to hijack the broker by providing this password, related to the openshift.sh script in Openshift Extras before 20130920. NOTE: this may overlap CVE-2013-4253 and CVE-2013-4281.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://seclists.org/fulldisclosure/2014/Dec/23http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.htmlhttp://www.securityfocus.com/archive/1/534161/100/0/threadedhttp://www.securityfocus.com/bid/68634http://www.vmware.com/security/advisories/VMSA-2014-0012.htmlhttps://exchange.xforce.ibmcloud.com/vulnerabilities/94555http://seclists.org/fulldisclosure/2014/Dec/23http://www.oracle.com/technetwork/topics/security/cpujul2014-1972956.htmlhttp://www.securityfocus.com/archive/1/534161/100/0/threadedhttp://www.securityfocus.com/bid/68634http://www.vmware.com/security/advisories/VMSA-2014-0012.htmlhttps://exchange.xforce.ibmcloud.com/vulnerabilities/94555
2014-07-17
Published