Vulnerabilities > Oracle > Weblogic Server > High

DATE CVE VULNERABILITY TITLE RISK
2021-02-24 CVE-2020-11987 Server-Side Request Forgery (SSRF) vulnerability in multiple products
Apache Batik 1.13 is vulnerable to server-side request forgery, caused by improper input validation by the NodePickerPanel.
network
low complexity
apache fedoraproject oracle debian CWE-918
8.2
2021-02-18 CVE-2020-28491 Allocation of Resources Without Limits or Throttling vulnerability in multiple products
This affects the package com.fasterxml.jackson.dataformat:jackson-dataformat-cbor from 0 and before 2.11.4, from 2.12.0-rc1 and before 2.12.1.
network
low complexity
fasterxml quarkus oracle CWE-770
7.5
2020-07-15 CVE-2020-2967 Unspecified vulnerability in Oracle Weblogic Server
Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Web Services).
network
low complexity
oracle
7.5
2020-07-15 CVE-2020-14639 Unspecified vulnerability in Oracle Weblogic Server
Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Sample apps).
network
low complexity
oracle
7.5
2020-07-15 CVE-2020-14589 Unspecified vulnerability in Oracle Weblogic Server
Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Web Container).
network
low complexity
oracle
7.5
2020-07-15 CVE-2020-14588 Unspecified vulnerability in Oracle Weblogic Server
Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Web Container).
network
low complexity
oracle
8.2
2020-04-15 CVE-2020-2963 Unspecified vulnerability in Oracle Weblogic Server
Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Web Services).
network
low complexity
oracle
7.2
2020-04-15 CVE-2020-2867 Unspecified vulnerability in Oracle Weblogic Server 12.1.3.0.0/12.2.1.3.0/12.2.1.4.0
Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Web Container).
network
low complexity
oracle
8.2
2020-04-15 CVE-2020-2828 Unspecified vulnerability in Oracle Weblogic Server 10.3.6.0.0
Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: WLS Web Services).
network
low complexity
oracle
7.5
2020-04-15 CVE-2020-2798 Unspecified vulnerability in Oracle Weblogic Server
Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: WLS Web Services).
network
low complexity
oracle
7.2