logo

Vulnerability details for CVE-2020-2555 

Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Caching,CacheStore,Invocation). Supported versions that are affected are 3.7.1.0, 12.1.3.0.0, 12.2.1.3.0 and 12.2.1.4.0. Easily exploitable vulnerability allows una...

CVSS Score (Vector) 7.5 (AV:N/AC:L/Au:N/C:P/I:P/A:P)
ThreatWorx Rating 5 - Urgent
Weakness Types CWE-502 Deserialization of Untrusted Data, Man-In-The-Middle, Code Execution, Gain Information, Code Injection, Access Bypass, Directory Traversal, DoS
Reported By Security Research, PacketStorm, GitHub, Oracle, US-CERT, IoT
First Reported Jan 14, 2020 by Oracle
Last Updated Feb 14, 2025 by NVD
NVD Status Published CVE-2020-2555
Affected Products 667 affected product(s) reported by NVD, Security Research, GitHub, Oracle, IoT
Patches 582 patch(es) published by Oracle, IoT
Remediations No known remediations
Latest Reference NVD