Security Update:Oracle has released a HIGH security alert to address a vulnerability in WebLogic
Status Type
Private
Date and Time
Reason
Security update
Impact
WebLogic users
WHAT HAPPENED?
Oracle has released a HIGH security alert to address a vulnerability in WebLogic.
Advanced Users and Affected Systems:For a complete description of the vulnerabilities, impacted products and updates refer to:
- Oracle Security Alert Advisory - CVE-2019-2725 at https://www.oracle.com/technetwork/security-advisory/alert-cve-2019-2725-5466295.html [1].
WHAT'S THE PROBLEM?
Exploitation of this vulnerability may allow an attacker to take control of an affected system.
AFFECTED SYSTEMS:
- All versions of Oracle WebLogicwith WLS9_ASYNC and WLS-WSAT components enabled
- Oracle WebLogic versions 10.3.6.0.0 and 12.1.3.0.0
HOW DO I PROTECT MY COMPUTER?
Oraclestronglyrecommends that customers apply appropriate updates provided by Oracle to affected systems immediately, after appropriate testing. For details refer to the Advisory listed above.
RELATED LINKS
- IT Security – http://it.ucsf.edu/security [2]