INSPECTING ARCHIVED INTELLIGENCE (OUTDATED VERSION).

Oracle WebLogic CVE-2024-21182 Exploit Added to Catalog

| 2026-06-02 18:14 CRITICAL HIGH EXPLOITED VULNERABILITY
Executive Summary
AI-generated
The vulnerability, CVE-2024-21182 (CVSS score 7.5), allows an unauthenticated attacker with network access to take control of susceptible servers. This high-severity security flaw impacts Oracle WebLogic Server versions [IOC HIDDEN • LOGIN REQUIRED].0 and [IOC HIDDEN • LOGIN REQUIRED].0, making it a critical issue for organizations relying on this software. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added the vulnerability to its Known Exploited Vulnerabilities catalog, recommending immediate patching by June 4, 2026, to secure networks.
Technical Mitigations AI-generated
• Patch Oracle WebLogic Server versions <a href="/auth/login?next=/detail/XbMDjJ4BHUyMcQl65m7U" class="ioc-censored-pill text-decoration-none" title="Protected IoC: Sign in to view" data-bs-toggle="tooltip"><span class="badge bg-black text-warning border border-warning border-opacity-75 font-monospace ioc-lock-tag align-middle"><i class="bi bi-lock-fill me-1"></i>[IOC HIDDEN &bull; LOGIN REQUIRED]</span></a>.0 and <a href="/auth/login?next=/detail/XbMDjJ4BHUyMcQl65m7U" class="ioc-censored-pill text-decoration-none" title="Protected IoC: Sign in to view" data-bs-toggle="tooltip"><span class="badge bg-black text-warning border border-warning border-opacity-75 font-monospace ioc-lock-tag align-middle"><i class="bi bi-lock-fill me-1"></i>[IOC HIDDEN &bull; LOGIN REQUIRED]</span></a>.0 to CVE-2024-21182 (CVSS score: 7.5) as soon as possible. • Implement network access controls, such as firewalls or intrusion detection systems, to prevent unauthenticated attackers from exploiting the vulnerability remotely over T3 or IIOP protocols. • Regularly review and update Oracle WebLogic Server configurations and applications to ensure they are patched against known vulnerabilities like CVE-2024-21182.
Technical Observables Login Required
Indicators of Compromise (IoCs) Protected

Raw threat telemetry, malicious IP addresses, file hashes, and direct VirusTotal correlation are restricted to authenticated users.

12.2.•••.•••
14.1.•••.•••
Intelligence Metadata
Actors / Malware / CVEs / Campaigns
CVE-2024-21182CVE-2024-21182 CVE-2026-21962CVE-2026-21962 CVE-2020-2883CVE-2020-2883
Target & Sectors
Global Scope governmentgovernment
Incident Timeline
‎July 2024
Threat actors used automated exploitation attempts to target Oracle WebLogic CVE-2026-21962.
organisation Oracle
organisation CVE-2026-21962
organisation CloudSEK
organisation WebLogic
organisation CVSS
organisation Oracle WebLogic
‎January 2025
Threat actors used a previously disclosed vulnerability in Oracle WebLogic Server to target the U.S. Cybersecurity and Infrastructure Security Agency (CISA).
organisation CVSS
tactic T1584.004 - Server
tactic T1588.006 - Vulnerabilities
vulnerability CVE-2020-2883
vulnerability CVSS score 9.8
organisation Known Exploited
organisation KEV
‎Jun 02, 2026
Threat actors exploited a known vulnerability in Oracle WebLogic, CVE-2024-21182.
‎2026/06/02
U.S. CISA added the Oracle WebLogic CVE-2024-21182 flaw to its Known Exploited Vulnerabilities catalog after successful exploitation of an unauthenticated vulnerability allowing attackers to access sensitive information on affected servers via T3 or IIOP protocols.
organisation Oracle WebLogic CVE-2024-21182
organisation KEV Catalog After Active Exploitation
organisation Oracle WebLogic
infrastructure 12.2.1
infrastructure 4.0
infrastructure 14.1.1
infrastructure 0.0
organisation WebLogic
organisation IIOP
organisation T3
‎June 4, 2026
Threat actors exploited the Oracle WebLogic CVE-2024-21182 vulnerability and recommended affected Federal Civilian Executive Branch agencies apply necessary fixes by June 4, 2026.
attribution Federal Civilian Executive Branch
attribution FCEB
Tactical Metrics
Metrics
infrastructure
‎12.2.1
Software Version
Metrics
infrastructure
‎4.0
Software Version
Metrics
infrastructure
‎14.1.1
Software Version
Metrics
infrastructure
‎0.0
Software Version