EXPOSURES › CVE-2020-2883
CVE-2020-2883
HIGH ⌖ ON CISA KEV · EXPLOITEDOracle WebLogic Server was exploited in the wild via CVE-2020-2883, an unauthenticated RCE flaw in its IIOP/T3 protocols.
This vulnerability allows unauthenticated attackers to execute arbitrary code on WebLogic instances, directly threatening DIB systems relying on Oracle Fusion Middleware. The fact that it was actively exploited in the wild and linked to ransomware campaigns highlights the critical need for immediate patching and strict network segmentation of WebLogic servers.
Shame score — The vulnerability was actively exploited in the wild and linked to ransomware campaigns, indicating a failure to patch a known critical flaw in a widely deployed product.
▸ RECOMMENDED ACTION Actively exploited (CISA KEV) — remediate now, ahead of your normal patch cycle.
Oracle WebLogic Server, a product within the Fusion Middleware suite, contains an unspecified vulnerability exploitable by an unauthenticated attacker with network access via IIOP or T3.
| PRODUCT | STATUS |
|---|---|
| Aconex for Defense Oracle |
Authorized |
| Federal Managed Cloud Services Oracle |
Authorized |
| Fusion Cloud Oracle |
Authorized |
| Government Cloud - Common Controls Oracle |
Authorized |
| Oracle Cloud Infrastructure-Government Cloud Oracle |
Authorized |
| Oracle Enterprise Performance Management (EPM) Oracle |
Authorized |
| Oracle Enterprise Performance Management (EPM) - Moderate Oracle |
In Process |
| Oracle Service Cloud Oracle |
Authorized |
| Oracle Service Cloud (DOD) Oracle |
Authorized |
| Taleo Cloud - U.S. Government Cloud Oracle |
Authorized |