CNET - Oracle issues security patch
Oracle has issued an upgrade to its E-Business Suite 11i diagnostics module containing a number of the security fixes, according to an alert from applications security firm Integrigy. "The significant [security] issue is [that] some diagnostics can be executed without any authentication, and it is possible to configure the diagnostics to be unrestricted," according to the Integrigy report.
The link address is: http://news.zdnet.co.uk/internet/security/0,39020375,39254931,00.htm