Oracle WebLogic Server Remote Code Execution Vulnerability (CVE-2024-21216)

Overview Recently, NSFOCUS CERT detected that Oracle issued a security announcement and fixed the deserialization vulnerability in WebLogic Server (CVE-2024-21216). Since WebLogic does not strictly filter incoming data through the T3/IIOP protocol, when the T3/IIOP protocol is enabled, an unauthenticated remote attacker sends a special request to the server through the T3/IIOP protocol to execute […]

The post Oracle WebLogic Server Remote Code Execution Vulnerability (CVE-2024-21216) appeared first on NSFOCUS, Inc., a global network and cyber security leader, protects enterprises and carriers from advanced cyber attacks..

The post Oracle WebLogic Server Remote Code Execution Vulnerability (CVE-2024-21216) appeared first on Security Boulevard.

08 November 2024


>>More