First published: Thu Jul 17 2014(Updated: )
Unspecified vulnerability in the Oracle WebLogic Server component in Oracle Fusion Middleware 10.0.2.0 and 10.3.6.0 allows remote attackers to affect integrity via vectors related to WLS - Web Services.
Credit: secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
VMware vCenter | =5.0 | |
VMware vCenter | =5.1 | |
VMware vCenter | =5.5 | |
VMware vCenter Server Appliance | =5.1 | |
VMware ESXi and Horizon DaaS | =5.1 | |
Oracle Fusion Middleware | =10.0.2 | |
Oracle Fusion Middleware | =10.3.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2014-4241 is considered to have a moderate severity rating as it could allow remote attackers to affect integrity.
To fix CVE-2014-4241, it is recommended to apply the relevant security patches provided by Oracle for affected versions of Fusion Middleware.
CVE-2014-4241 affects Oracle Fusion Middleware versions 10.0.2.0 and 10.3.6.0, as well as certain versions of VMware vCenter and ESXi.
Yes, CVE-2014-4241 can be exploited remotely by attackers targeting vulnerable Oracle WebLogic Server components.
While the best course of action is to patch the vulnerability, interim measures may include restricting access to the affected components.