ASA-2019-00370 – Oracle WebLogic Server: Deserialization vulnerability via XMLDecoder

A deserialization vulnerability via XMLDecoder in Oracle WebLogic Server Web Services. This remote code execution vulnerability is remotely exploitable without authentication, i.e., may be exploited over a network without the need for a username and password.