CVE-2019-2725Oracle WebLogic Server, Injection

PUBLISHEDvulnerability record
2022-01-10 · last modified June 21, 2025

Metadata

CVE ID:
CVE-2019-2725
Project:
Oracle
Product:
WebLogic Server
Date Added:
2022-01-10
Due Date:
2022-07-10
Last Updated:
June 21, 2025

Vulnerability Name

Oracle WebLogic Server, Injection

Description

Injection vulnerability in the Oracle WebLogic Server component of Oracle Fusion Middleware (subcomponent: Web Services).

Known To Be Used in Ransomware Campaigns?

Ransomware Status:
KNOWN

Action

Apply updates per vendor instructions.

Additional Notes

Related Weaknesses