Rewterz

Rewterz Threat Advisory – Google Chrome remote code execution Vulnerabilities

November 3, 2020
Rewterz

Rewterz Threat Advisory – CVE-2020-7760 – Node.js codemirror module denial of service

November 3, 2020

Rewterz Threat Advisory – Oracle WebLogic Server Vulnerability

Severity

High

Analysis Summary

CVE-2020-14750

Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Console). Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle WebLogic Server. Successful attacks of this vulnerability can result in takeover of Oracle WebLogic Server.

Impact

Remote code execution

Affected Vendors

Oracle

Affected Products

Oracle WebLogic Server

Remediation

Refer to vendor advisory for the complete list of affected products and their respective patches.

https://www.oracle.com/security-alerts/alert-cve-2020-14750.html

Reading this advisory was a good start.

Make it a habit.

Rewterz publishes threat advisories ahead of mainstream cybersecurity media, informed by an AI-Native Autonomous SOC that sees regional threat actor activity in real time. Subscribe to receive each new advisory as it publishes, plus a monthly Middle East threat landscape brief drawn from our own SOC telemetry. For teams evaluating their detection coverage, a 30-minute consultation with a senior analyst is also available, at your pace, when you're ready.