Get a Pentest and security assessment of your IT network.

Cyber Security

Oracle Rushes Emergency Fix for Critical WebLogic Server Flaw

Oracle has released a rare out-of-band patch for a remote code-execution flaw in several versions of its WebLogic server. The vulnerability (CVE-2020-14750) has a CVSS base score of 9.8 out of 10, and is remotely exploitable without authentication (meaning it may be exploited over a network without the need for a username and password) The vulnerability exists in the Console of the Oracle Web Logic Server and can be exploited via the HTTP network protocol. A potential attack has low complexity and no user interaction is required, said Oracle.

Source: https://threatpost.com/oracle-update-weblogic-server-flaw/160889/

Related posts
Cyber Security

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

Cyber Security

Art of Twitter account hacking

Cyber Security

Alexa Eavesdropping Flub Re-Sparks Voice Assistant Privacy Debate

Cyber Security

Dan Geer, Richard Thieme on specialization in security