← KEV catalog
CISA known exploited vulnerability

CVE-2023-21839

Oracle WebLogic Server Unspecified Vulnerability

SOURCE FACT

Oracle · WebLogic Server

Oracle WebLogic Server contains an unspecified vulnerability that allows an unauthenticated attacker with network access via T3, IIOP, to compromise Oracle WebLogic Server.

Required action

Apply updates per vendor instructions.

CISA notes

https://www.oracle.com/security-alerts/cpujan2023.html; https://nvd.nist.gov/vuln/detail/CVE-2023-21839

View source evidence →

CHECK YOUR OUTSIDE-IN INVENTORY

Could this product be present?