Actively Exploited Oracle WebLogic Flaw Lets Unauthenticated Attackers Access Critical Data
The US Cybersecurity and Infrastructure Security Agency CISA on Monday added a maximumseverity security flaw impacting Oracle HTTP Server and Oracle WebLogic Server to its Known Exploited Vulnerabilities KEV catalog citing evidence of active exploitation The vulnerability tracked as CVE202621962 CVSS score 100 allows an unauthenticated attacker with network access via HTTP to