Vulnerability in Oracle Access Manager exploited to bypass authentication and control the account of any user

Wolfgang Ettlinger of SEC Consult Vulnerability Lab, information security expert, found vulnerability in Oracle Access Manager that can be exploited remotely to bypass authentication and take over the account of any user or administrator on the affected systems. Professionals tell us that Oracle Access Management provides Web SSO with MFA, general authorization and session management, and standard […]