U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds Oracle WebLogic Server and Mitel MiCollab flaws to its Known Exploited Vulnerabilities catalog.
CISA added two vulnerabilities to its catalog: CVE-2020-2883 affecting Oracle WebLogic Server and CVE-2024-41713 affecting Mitel MiCollab.
The Oracle WebLogic Server vulnerability allows remote attackers to execute arbitrary code without authentication.
The Mitel MiCollab vulnerabilities include a path traversal vulnerability and a local file read vulnerability.