NA
CVSSv4

CVE-2025-21549

CVSSv4: NA | CVSSv3: 7.5 | CVSSv2: NA | VMScore: 850 | EPSS: 0.00053 | KEV: Not Included
Published: 21/01/2025 Updated: 22/01/2025

Vulnerability Summary

Denial of Service Vulnerability in Oracle WebLogic Server 14.1.1

Oracle WebLogic Server in Oracle Fusion Middleware has a vulnerability in the Core component. This affects version 14.1.1.0.0. It is easy to exploit. An attacker without authentication can use network access via HTTP/2 to target Oracle WebLogic Server. Successful attacks can make the server hang or crash repeatedly, causing a Denial of Service (DoS). The CVSS 3.1 Base Score for this issue is 7.5, mainly affecting availability. The CVSS vector is (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H).

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

oracle weblogic server 14.1.1.0.0

oracle corporation oracle weblogic server