S4E just found a medium-severity finding from internal ip disclosure vulnerability scanner
PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
critical·Product Based Web Vulnerabilities·Updated Jan 3, 2024

CVE-2018-2628 Scanner

Detects 'Deserialization of Untrusted Data' vulnerability in Oracle Corporation WebLogic Server affects v. 10.3.6.0, 12.1.3.0, 12.2.1.2 and 12.2.1.3.

Est. Time~15 seconds
Scan TypeSingle Scan
Targetsdomain, ipv4, subdomain
CostFree
2.8k
Times Used
continuous scan runs
4.2k
Continuously Checked
assets under CS
0
Vulnerabilities Found
confirmed findings
References
🔴
CISA Known Exploited Vulnerability
This CVE is actively exploited in the wild. CISA mandates federal agencies to patch immediately.
CVECVE-2018-2628
9.8
CVSScritical
Exploitable remotely over the internet · no authentication required.

Vulnerability in the Oracle WebLogic Server component of Oracle Fusion Middleware (subcomponent: WLS Core Components). Supported versions that are affected are 10.3.6.0, 12.1.3.0, 12.2.1.2 and 12.2.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via T3 to compromise Oracle WebLogic Server. Successful attacks of this vulnerability can result in takeover of Oracle WebLogic Server. CVSS 3.0 Base Score 9.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H).

Attack Vector
Network
Privileges Req.
None
User Interaction
None
Affected
WebLogic Serverby Oracle Corporation
10.3.6.0
Updated Aug 21, 2026View on NVD →
Detail

Oracle Corporation's WebLogic Server is a Java application server used to deploy and run enterprise applications. It enables users to create and manage complex, large-scale distributed applications in a secure environment. It is widely used in the industry due to its robustness, scalability, and reliability. WebLogic Server is employed by enterprises across various industries, including banking and finance, healthcare, telecom, and retail.

One of the most critical vulnerabilities associated with WebLogic Server is CVE-2018-2628. This vulnerability resides in the WLS core components sub-component of Oracle Fusion Middleware. It is rated with a CVSS 3.0 base score of 9.8 out of 10, making it a severe security threat. This vulnerability allows an unauthenticated attacker with network access to compromise the server easily. Cybercriminals can exploit this vulnerability via T3 (a proprietary protocol used by Oracle) to take over the Oracle WebLogic Server.

If an attacker successfully exploits the CVE-2018-2628 vulnerability, it can lead to the complete takeover of the Oracle WebLogic Server, resulting in confidentiality, integrity, and availability impacts. This attack results in unauthorized access to sensitive data, exposure of confidential information, and disruption of critical business operations. It can cause immense damage to the affected organization's reputation and financial wellbeing.

By subscribing to the pro features of the s4e.io platform, organizations can become more aware of vulnerabilities in their digital assets. The platform uses cutting-edge technology to detect and identify security threats before they cause severe damage to the organization's infrastructure and operations. It offers real-time alerts, detailed reports, and expert recommendations for mitigating security risks. Users can easily and quickly learn about the vulnerabilities that are present in their digital assets and take appropriate steps to address them.

 

REFERENCES

Solution Advice

Organizations can take multiple precautions to protect against the CVE-2018-2628 vulnerability. Here are some of the measures that organizations can implement:

  • Install the latest patches and security updates from Oracle.
  • Utilize proper access controls by configuring the server to authenticate all incoming traffic.
  • Set up firewalls to restrict access to vulnerable ports.
  • Limit the exposure of WebLogic Server by placing it in a DMZ or behind a reverse proxy.
  • Monitor the WebLogic Server log files for unusual activity.

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.

CVE-2018-2628 scanner - Deserialization of Untrusted Data vulnerability in Oracle Corporation WebLogic Server | S4E