Oracle Identity Manager contains an authentication bypass vulnerability in its REST WebServices component. An attacker can gain unauthorized access to administrative endpoints. Successful exploitation allows complete takeover of the system, compromising all managed identities and access controls.
Unauthenticated attackers can compromise the system.
Apply the latest Oracle Critical Patch Update for Identity Manager

You can search and find all vulnerabilities
