Oracle Fusion Middleware Vulnerabilities Patched; 9 Critical (CVSS 10.0) (advisories.ncsc.nl)
0xBASE INTEL BRIEF
- 345 vulnerabilities patched in Oracle Fusion Middleware, 9 critical (CVSS 10.0).
- 145 additional vulnerabilities with CVSS scores 9.0-9.9.
- Unauthenticated remote exploitation possible via HTTP, LDAP, SOAP.
"The Dutch NCSC has issued an advisory regarding 345 vulnerabilities patched by Oracle in its Fusion Middleware products. Nine of these have a CVSS score of 10.0, allowing unauthenticated remote attackers to fully compromise systems via HTTP, LDAP, or SOAP. An additional 145 vulnerabilities have scores between 9.0 and 9.9. The NCSC assesses that widespread exploitation is highly likely and urges immediate patching."
no comments yet.