#VU71314 Improper input validation in Oracle WebLogic Server - CVE-2022-40153
Published: January 18, 2023
Oracle WebLogic Server
Oracle
Description
The vulnerability allows a remote non-authenticated attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to improper input validation within the Centralized Third Party Jars (XStream) component in Oracle WebLogic Server. A remote non-authenticated attacker can exploit this vulnerability to perform a denial of service (DoS) attack.