vulnerability Oracle WebLogic Server Java Object Deserialization
Hello,
Vulnerability scanner running in our infrastructure found these vulnerabilities in our weblogic servers:
1- Scanner found severe vulnerability Oracle WebLogic Server Java Object Deserialization RCE (CVE-20183245) on SERVER1 (Oracle weblogic 12.2.1.3, and 12.2.1.2 are installed on this machine)
2- Scanner found severe vulnerability Oracle WebLogic Unsupported Version Detection on SERVER2 (Oracle weblogic 12.2.1.3, and 12.2.1.2 are installed on this machine)
what fixes we should apply, and if fixes needed do we have to re-create the domains and all configurations.
Best Regards,
Hiba