CVE-2020-14756: Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core Components). Supported versio
criticalvulnerability
security
Summary
A critical vulnerability (CVE-2020-14756) exists in Oracle Coherence, a data management product, that allows attackers to take over the system without needing to log in. The flaw affects multiple versions of the software and can be exploited remotely through IIOP and T3 network protocols, with a severity rating of 9.8 out of 10 (CVSS score, which measures how dangerous a security flaw is).
Vulnerability Details
CVSS Score
9.8(critical)
EPSS (30-day exploit probability)
EPSS: 88.8%
Classification
Attack SophisticationModerate
Original source: https://nvd.nist.gov/vuln/detail/CVE-2020-14756
First tracked: February 15, 2026 at 08:52 PM
Classified by LLM (prompt v3) · confidence: 95%