CISA added Oracle WebLogic flaw CVE-2024-21182 to its KEV catalog, giving federal agencies until June 4 to patch exposed servers.
Hackers accessed the university's student record system through a hole in third-party software.
Attackers are targeting a vulnerability in Oracle's WebLogic Server. It allows for full compromise of the instance.
Organizations running Oracle WebLogic Server faced active attacks for roughly two weeks before any official fix arrived, ...