cbcvebase.

Oracle Weblogic Server vulnerabilities

324 known vulnerabilities affecting oracle/weblogic_server.

Total CVEs
324
CISA KEV
16
actively exploited
Public exploits
38
Exploited in wild
34
Severity breakdown
CRITICAL88HIGH102MEDIUM130LOW4

Vulnerabilities

Page 17 of 17
CVE-2020-8908P4LOWCVSS 3.3v14.1.1.0.02020-12-10
CVE-2020-8908 [LOW] CWE-378 CVE-2020-8908: A temp directory creation vulnerability exists in all versions of Guava, allowing an attacker with a A temp directory creation vulnerability exists in all versions of Guava, allowing an attacker with access to the machine to potentially access data in a temporary directory created by the Guava API com.google.common.io.Files.createTempDir(). By default, on unix-like systems, the created directory is world-readable (readable by an attacker with access to
nvd
CVE-2008-2578P4MEDIUMCVSS 4.3v9.2v10.02008-07-15
CVE-2008-2578 [MEDIUM] CVE-2008-2578: Unspecified vulnerability in the WebLogic Server component in Oracle BEA Product Suite 10.0 and 9.2 Unspecified vulnerability in the WebLogic Server component in Oracle BEA Product Suite 10.0 and 9.2 MP1 has unknown impact and local attack vectors.
nvd
CVE-2021-1996P4LOWCVSS 2.4v10.3.6.0.0v12.1.3.0.02021-01-20
CVE-2021-1996 [LOW] CVE-2021-1996: Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Web Serv Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Web Services). Supported versions that are affected are 10.3.6.0.0 and 12.1.3.0.0. Easily exploitable vulnerability allows high privileged attacker with network access via HTTP to compromise Oracle WebLogic Server. Successful attacks require human interaction from a perso
nvd
CVE-2008-2576P4MEDIUMCVSS 4.4v8.1v9.0+2 more2008-07-15
CVE-2008-2576 [MEDIUM] CVE-2008-2576: Unspecified vulnerability in the WebLogic Server component in Oracle BEA Product Suite 9.2, 9.1, 9.0 Unspecified vulnerability in the WebLogic Server component in Oracle BEA Product Suite 9.2, 9.1, 9.0, and 8.1 SP6 has unknown impact and local attack vectors.
nvd
Oracle Weblogic Server vulnerabilities | cvebase