CVE-2021-2344: Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Supported versions that are
highvulnerability
security
Summary
Oracle Coherence, a data management product in Oracle Fusion Middleware, has a vulnerability (CVE-2021-2344) that allows attackers on a network to crash or hang the system without needing to log in, affecting versions 3.7.1.0 through 14.1.1.0.0. The vulnerability has a CVSS score (a 0-10 rating of how severe a vulnerability is) of 7.5, meaning it is moderately serious. Attackers can exploit this through T3 and IIOP (network communication protocols) connections to cause a denial of service (DOS, making a system unavailable to users).
Vulnerability Details
CVSS Score
7.5(high)
EPSS (30-day exploit probability)
EPSS: 1.6%
Classification
Attack SophisticationTrivial
Original source: https://nvd.nist.gov/vuln/detail/CVE-2021-2344
First tracked: February 15, 2026 at 08:52 PM
Classified by LLM (prompt v3) · confidence: 95%