CVE-2024-21182
Act now ● On CISA KEV — actively exploited
Actively exploited — on the CISA KEV list.
CVSS base
—
EPSS — probability of exploitation (30 days)
74.2%
99.5th percentile
CISA KEV
Listed
Added 2026-06-01 · patch by 2026-06-04
Weakness / dates
—
Published — · modified —
Timeline
- 2026-06-01 — Added to CISA KEV (actively exploited)
- 2026-06-04 — CISA patch-by deadline
Description
Oracle WebLogic contains an unspecified vulnerability that could allow an unauthenticated attacker with network access via T3, IIOP to compromise Oracle WebLogic Server. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle WebLogic Server accessible data.