← Retour à la recherche de CVE

CVE-2026-47060

Oracle Database Server

Description

Vulnerability in the JDBC component of Oracle Database Server. Supported versions that are affected are 19.3-19.31, 21.3-21.22 and 23.4.0-23.26.2. Easily exploitable vulnerability allows unauthenticated attacker with network access via Oracle Net to compromise JDBC. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all JDBC accessible data. CVSS 3.1 Base Score 6.5 (Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N).

CVSS 6.5EPSS 0.22599999999999998%Risque 0.66
Voir la source
Publication
2026-07-21 22:17:11
Versions concernées
>=19.3,<19.32,>=21.3,<21.23,>=23.4.0,<23.26.3
Type
Logiciel critique
Dernière modification
2026-08-06 13:42:09
Vecteur
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N