Attackers can execute arbitrary code without authentication if Oracle's Identity or Web Services Managers are exposed to the Web.
The ‘easily exploitable’ vulnerability impacts the Identity Manager tool within the Oracle enterprise integration platform, according to a disclosure. The U.S. Cybersecurity and Infrastructure ...