CVE-2020-2798
published 2020-04-15CVE-2020-2798: Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: WLS Web Services). Supported versions that are affected are…
PriorityP350high7.2CVSS 3.1
AVNACLPRHUINSUCHIHAH
EPSS
7.98%
94.1th percentile
Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: WLS Web Services). Supported versions that are affected are 10.3.6.0.0, 12.1.3.0.0, 12.2.1.3.0 and 12.2.1.4.0. Easily exploitable vulnerability allows high privileged attacker with network access via IIOP, T3 to compromise Oracle WebLogic Server. Successful attacks of this vulnerability can result in takeover of Oracle WebLogic Server. CVSS 3.0 Base Score 7.2 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H).
Affected
8 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| oracle | weblogic_server | — | — |
| oracle | weblogic_server | — | — |
| oracle | weblogic_server | — | — |
| oracle | weblogic_server | — | — |
| oracle_corporation | weblogic_server | — | — |
| oracle_corporation | weblogic_server | — | — |
| oracle_corporation | weblogic_server | — | — |
| oracle_corporation | weblogic_server | — | — |
CVSS provenance
nvdv3.17.2HIGHCVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
nvdv3.07.2HIGHCVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
nvdv2.06.5MEDIUMAV:N/AC:L/Au:S/C:P/I:P/A:P
vendor_oracle7.2HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Oracle
Oracle Oracle Fusion Middleware Risk Matrix: WLS Web Services — CVE-2020-2798
vendor_oracle·2020-04-15·CVSS 7.2
CVE-2020-2798 [HIGH] Oracle Oracle Fusion Middleware Risk Matrix: WLS Web Services — CVE-2020-2798
Oracle Oracle Fusion Middleware Risk Matrix: WLS Web Services vulnerability
CVE: CVE-2020-2798
CVSS: 7.2
Protocol: IIOP, T3
Remote exploit: No
Affected versions: Network
Advisory: cpuapr2020 (APR 2020)
GHSA
GHSA-cc8r-88h9-67f7: Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: WLS Web Services)
ghsa_unreviewed·2022-05-24
CVE-2020-2798 [MEDIUM] GHSA-cc8r-88h9-67f7: Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: WLS Web Services)
Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: WLS Web Services). Supported versions that are affected are 10.3.6.0.0, 12.1.3.0.0, 12.2.1.3.0 and 12.2.1.4.0. Easily exploitable vulnerability allows high privileged attacker with network access via T3 to compromise Oracle WebLogic Server. Successful attacks of this vulnerability can result in takeover of Oracle WebLogic Server. CVSS 3.0 Base Score 7.2 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H).
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2020-12604 envoy: Resource exhaustion via HTTP/2 client requests with large payloads and improper stream windows
bugzilla·2020-06-04·CVSS 7.5
CVE-2020-12604 [HIGH] CVE-2020-12604 envoy: Resource exhaustion via HTTP/2 client requests with large payloads and improper stream windows
CVE-2020-12604 envoy: Resource exhaustion via HTTP/2 client requests with large payloads and improper stream windows
Envoy through 1.14.1 is susceptible to increased memory usage in the case where an HTTP/2 client requests a large payload but does not send enough window updates to consume the entire stream and does not reset the stream. The attacker can cause data associated with many streams to be buffered forever.
Discussion:
Acknowledgments:
Name: the Envoy security team
---
External References:
https://istio.io/latest/news/security/istio-security-2020-007/
---
Upstream commit: https://github.com/envoyproxy/envoy/commit/5eba69a1f375413fb93fab4173f9c393ac8c2818
---
This issue has been addressed in the following products:
OpenShift Service Mesh 1.1
Via RHSA-2020:2798 https://
Bugzilla
CVE-2020-12605 envoy: Resource exhaustion when processing HTTP/1.1 headers with long field names
bugzilla·2020-06-04·CVSS 7.5
CVE-2020-12605 [HIGH] CVE-2020-12605 envoy: Resource exhaustion when processing HTTP/1.1 headers with long field names
CVE-2020-12605 envoy: Resource exhaustion when processing HTTP/1.1 headers with long field names
Envoy through 1.14.1 may consume excessive amounts of memory when processing HTTP/1.1 headers with long field names or requests with long URLs.
Discussion:
Acknowledgments:
Name: the Envoy security team
---
External References:
https://istio.io/latest/news/security/istio-security-2020-007/
---
Upstream commit: https://github.com/envoyproxy/envoy/commit/7ca28ff7d46454ae930e193d97b7d08156b1ba59
---
This issue has been addressed in the following products:
OpenShift Service Mesh 1.1
Via RHSA-2020:2798 https://access.redhat.com/errata/RHSA-2020:2798
---
This bug is now closed. Further updates for individual products will be reflected on the CVE page(s):
https://access.redhat.com/secu
2020-04-15
Published