Skip to content
COOEY

EXPOSURES › CVE-2020-2883

CVE-2020-2883

HIGH ⌖ ON CISA KEV · EXPLOITED
DETAIL
SourceCISA-KEV · kev Published2025-01-07 Referencehttps://nvd.nist.gov/vuln/detail/CVE-2020-2883 ↗
⚡ RCE ⌖ EXPLOITED IN THE WILD SHAME 65/100 exploited-in-wildransomwareunpatchedrce

Oracle WebLogic Server was exploited in the wild via CVE-2020-2883, an unauthenticated RCE flaw in its IIOP/T3 protocols.

This vulnerability allows unauthenticated attackers to execute arbitrary code on WebLogic instances, directly threatening DIB systems relying on Oracle Fusion Middleware. The fact that it was actively exploited in the wild and linked to ransomware campaigns highlights the critical need for immediate patching and strict network segmentation of WebLogic servers.

Shame score — The vulnerability was actively exploited in the wild and linked to ransomware campaigns, indicating a failure to patch a known critical flaw in a widely deployed product.

▸ RECOMMENDED ACTION  Actively exploited (CISA KEV) — remediate now, ahead of your normal patch cycle.

DESCRIPTION

Oracle WebLogic Server, a product within the Fusion Middleware suite, contains an unspecified vulnerability exploitable by an unauthenticated attacker with network access via IIOP or T3.

AFFECTED FEDRAMP PRODUCTS · 10
PRODUCTSTATUS
Aconex for Defense
Oracle
Authorized
Federal Managed Cloud Services
Oracle
Authorized
Fusion Cloud
Oracle
Authorized
Government Cloud - Common Controls
Oracle
Authorized
Oracle Cloud Infrastructure-Government Cloud
Oracle
Authorized
Oracle Enterprise Performance Management (EPM)
Oracle
Authorized
Oracle Enterprise Performance Management (EPM) - Moderate
Oracle
In Process
Oracle Service Cloud
Oracle
Authorized
Oracle Service Cloud (DOD)
Oracle
Authorized
Taleo Cloud - U.S. Government Cloud
Oracle
Authorized