Oracle OpenSSO is prone to a remote security vulnerability.
The vulnerability can be exploited over the 'HTTPS' protocol. The 'Administration' sub component is affected.
Vendor Status:
Orcale had since issued an update for this vulnerability.
Disclosure Timeline:
2012-January-23 Rev 3. Updated JD Edwards information for One World Tools SP24
2012-January-18 Rev 2. Updated credit information
2012-January-17 Rev 1. Initial Release