Remote code execution vulnerability in Console (jackson-databind) component of Oracle Weblogic Server- CVE-2018-7489Deprecated |
ID: oval:org.secpod.oval:def:46712 | Date: (C)2018-07-19 (M)2023-11-13 |
Class: VULNERABILITY | Family: windows |
The host is installed with oracle webLogic through 12.2.1.2 or 12.2.1.3 and is prone to a remote code execution vulnerability. A flaw is present in the application, which fails to handle jackson-databind component issue. Successful exploitation allows an attacker to execute an unauthenticated remote code.
Platform: |
Microsoft Windows 8.1 |
Microsoft Windows Server 2012 R2 |
Microsoft Windows Server 2008 |
Microsoft Windows XP |
Microsoft Windows Vista |
Microsoft Windows 7 |
Microsoft Windows 8 |
Microsoft Windows Server 2003 |
Microsoft Windows Server 2008 R2 |
Microsoft Windows Server 2012 |
Microsoft Windows Server 2016 |
Microsoft Windows 10 |
Product: |
Oracle Weblogic Server |