{"uuid": "e0a45fc3-e18b-4fc8-8107-71a058990389", "vulnerability": {"vulnId": "CVE-2017-10271", "altId": []}, "gcve": {"origin_uuid": "cce329bf-df49-4c6e-a027-80be2e6483bd", "object_uuid": "e0a45fc3-e18b-4fc8-8107-71a058990389"}, "status": {"exploited": true, "status_reason": "confirmed", "status_updated_at": "2026-08-10T02:00:00+02:00"}, "timestamps": {"asserted_at": "2026-08-10T00:00:00+00:00", "recorded_at": "2026-10-02T06:52:36+00:00", "first_seen_at": "2026-08-10T00:00:00+00:00"}, "scope": {"notes": "Affected: Oracle Corporation / WebLogic Server | Description: Vulnerability in the Oracle WebLogic Server component of Oracle Fusion Middleware (subcomponent: WLS Security). | Patched since: 2017/10/17 | Exploitation type: ransomware | CWEs: CWE-306 | Origin source: NCSC HU | Notes: https://github.com/c0mmand3rOpSec/CVE-2017-10271"}, "evidence": [{"type": "csirt_report", "source": "enisa-cnw-kev", "signal": "confirmed_compromise", "confidence": 0.75, "details": {"cwes": ["CWE-306"], "euvd": "EUVD-2017-1918", "notes": "https://github.com/c0mmand3rOpSec/CVE-2017-10271", "catalog": "ENISA / EU CSIRTs Network (CNW) KEV JSON", "product": "WebLogic Server", "dateReported": "2026/08/10", "originSource": "NCSC HU", "patchedSince": "2017/10/17", "vendorProject": "Oracle Corporation", "exploitationType": ["ransomware"], "vulnerabilityName": "", "threatActorsExploiting": []}}], "references": [{"id": "CVE-2017-10271", "url": "https://www.cve.org/CVERecord?id=CVE-2017-10271"}, {"id": "EUVD-2017-1918", "url": "https://euvd.enisa.europa.eu/vulnerability/EUVD-2017-1918"}, {"id": "source", "url": "https://github.com/c0mmand3rOpSec/CVE-2017-10271"}]}
