logo

A Vulnerability in Oracle Products Could Allow for Remote Code Execution

ID: dc7dc6b8-0d65-5c8e-9120-ee24d16ade9d

STIX ID: report--dc7dc6b8-0d65-5c8e-9120-ee24d16ade9d

Feed Name: CISecurity.org Advisories

Threat Score
75/100

Date Published: 2026-03-23

Date Updated: 2026-04-27

...
...

A remotely exploitable, unauthenticated remote code execution vulnerability (CVE-2026-21992) has been reported in Oracle Identity Manager and Oracle Web Services Manager; successful exploitation may allow attackers to run arbitrary code, install programs, view/change/delete data, or create accounts with full privileges, with higher impact for administrative users.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.