CVE-2020-2551: Oracle Fusion Middleware Unspecified Vulnerability
Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: WLS Core Components). Supported versions that are affected are 10.3.6.0.0, 12.1.3.0.0, 12.2.1.3.0 and 12.2.1.4.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via IIOP to compromise Oracle WebLogic Server. Successful attacks of this vulnerability can result in takeover of Oracle WebLogic Server. CVSS 3.0 Base Score 9.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H).
Other sources
Oracle Fusion Middleware contains an unspecified vulnerability in the WLS Core Components that allows an unauthenticated attacker with network access via IIOP to compromise the WebLogic Server.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-2551?
CVE-2020-2551 is an unspecified vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware.
What is the severity of CVE-2020-2551?
CVE-2020-2551 has a severity rating of 9.8 (Critical).
Which versions of Oracle WebLogic Server are affected by CVE-2020-2551?
CVE-2020-2551 affects Oracle WebLogic Server versions 10.3.6.0.0, 12.1.3.0.0, 12.2.1.3.0, and 12.2.1.4.0.
How can CVE-2020-2551 be exploited?
CVE-2020-2551 can be exploited by an unauthenticated attacker with network access via IIOP.
Where can I find more information about CVE-2020-2551?
More information about CVE-2020-2551 can be found at the Oracle Security Alerts page.