Skip to Main Content

Integration

Announcement

For appeals, questions and feedback about Oracle Forums, please email oracle-forums-moderators_us@oracle.com. Technical questions should be asked in the appropriate category. Thank you!

Interested in getting your voice heard by members of the Developer Marketing team at Oracle? Check out this post for AppDev or this post for AI focus group information.

Question on vulnerabilities for WebLogic

MikkisFeb 2 2022

Hi,
Can someone please help me understand the below 2 vulnerabilities? I mean both seems to be same except that the mechanism used to exploit or hack WebLogic is different? Also, it said "....with network access..". Does this mean exploiter needs to get into network first before they can do anything on WebLogic, if the WebLogic is not internet facing? What if the WebLogic is shutdown and never needed to run?
CVE-2019-2725 Oracle WebLogic Server
CVE-2020-14882 Oracle WebLogic
Thanks in advance,
PM

Comments

Processing

Post Details

Added on Feb 2 2022
0 comments
128 views