Oracle Weblogic Server (MOSC)

MOSC Banner

Clarification if your Oracle Weblogic Server are affected by CVE against the ones listed as affected

Is it correct to say that Oracle Weblogic Servers running on 12.2.1.0.0, 12.2.1.1.0, and 12.2.1.2.0 are not affected by CVE with affected versions 12.2.1.3.0, 12.2.1.4.0?

For example, CVE-2020-14750 affects the following Oracle Weblogic Server versions

10.3.6.0.0, 12.1.3.0.0, 12.2.1.3.0, 12.2.1.4.0, 14.1.1.0.0

Do Oracle Weblogic Servers running on 12.2.1.0.0, 12.2.1.1.0, and 12.2.1.2.0 are also affected or not by CVE-2020-14750? The CVE explicitly mentioned both 12.2.1.3.0 and 12.2.1.4.0 which happen to be the same major and minor versions our systems are running on but ours have patch set release numbers (.0, .1, .2) which are not explicitly mentioned to be affected.

Thanks.

Howdy, Stranger!

Log In

To view full details, sign in to My Oracle Support Community.

Register

Don't have a My Oracle Support Community account? Click here to get started.

Category Leaderboard

Top contributors this month

New to My Oracle Support Community? Visit our Welcome Center

MOSC Help Center