CISA Known Exploited Vulnerability

CVE-2018-2628

Oracle · WebLogic Server

Oracle WebLogic Server Unspecified Vulnerability

Date added
BOD 22-01 due date
CWE CWE-502
Ransomware Unknown

CISA description

Oracle WebLogic Server contains an unspecified vulnerability which can allow an unauthenticated attacker with T3 network access to compromise the server.

Required action

Apply updates per vendor instructions.