Remote code execution vulnerability in the Web Services component of Oracle Weblogic Server - CVE-2019-2725Deprecated |
ID: oval:org.secpod.oval:def:54516 | Date: (C)2019-05-03 (M)2022-05-04 |
Class: VULNERABILITY | Family: unix |
The host is installed with Oracle Weblogic Server through 10.3.6.0.190416, 12.1.3.0.190416 or 12.2.1.3.190416 and is prone to a remote code execution vulnerability. A flaw is present in the application, which fails to handle unauthenticated network access. Successful exploitation allows an attacker to perform remote code execution over a network without requiring user credentials.
Product: |
Oracle Weblogic Server |