CVE-2020-2555CISA KEVEPSS p99.9%

CVE-2020-2555Oracle Multiple Products Remote Code Execution Vulnerability

Oracle / Multiple Products

Description

Multiple Oracle products contain a remote code execution vulnerability that allows an unauthenticated attacker with network access via T3 or HTTP to takeover the affected system. Impacted Oracle products: Oracle Coherence in Fusion Middleware, Oracle Utilities Framework, Oracle Retail Assortment Planning, Oracle Commerce, Oracle Communications Diameter Signaling Router (DSR).

Scoring

EPSS97.12% probability of exploitation · percentile 99.9% · 2026-06-17T12:03:21Z

CISA KEV entry

Added to KEV: 2021-11-03

(incoming)1

TypeTargetConfidenceTier
KEVEntryOracle Multiple Products Remote Code Execution Vulnerabilitykev-cve-2020-25550%live

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

CVE
Oracle WebLogic Server Remote Code Execution Vulnerability
CVE
Oracle Fusion Middleware Unspecified Vulnerability
CVE
Oracle WebLogic Server, Injection
CVE
Oracle Corporation WebLogic Server Remote Code Execution Vulnerability
CVE
Oracle Java SE and Java SE Embedded Remote Code Execution Vulnerability
CVE
CVE-2025-21535
Sourced from NVD + CISA KEV + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.