PatchSiren

Oracle Corporation CVE debriefs · Page 29

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

MEDIUM Oracle Corporation CVE published 2026-07-21

CVE-2026-60673

The CVE-2026-60673 vulnerability affects Oracle BI Publisher's XML Services component, allowing low-privileged attackers with network access via HTTP to compromise the system and access critical data. This vulnerability has a CVSS score of 6.5, with Confidentiality impacts. The affected versions are 8.2.0.0.0, 12.2.1.4.0, and 26.01.0.0.0. Organizations should prioritize patching to prevent low-privileged [truncated]

HIGH Oracle Corporation CVE published 2026-07-21

CVE-2026-60671

AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record was published on 2026-07-21T22:18:08.093Z and has not been modified since then. The CVE-2026-60671 vulnerability is a security issue in Oracle Business Intelligence Enterprise Edition that allows unauthenticated attackers with network access via HTTP to compromise the system. Successful attacks can result in unauthorized ab [truncated]

MEDIUM Oracle Corporation CVE published 2026-07-21

CVE-2026-60669

AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record was published on 2026-07-21T22:18:07.867Z and has not been modified since then. The CVE-2026-60669 vulnerability affects PeopleSoft Enterprise HCM Global Payroll Mexico version 9.2, a difficult to exploit vulnerability that allows low privileged attackers with network access via HTTP to compromise PeopleSoft Enterprise HCM [truncated]

HIGH Oracle Corporation CVE published 2026-07-21

CVE-2026-60668

AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record was published on 2026-07-21T22:18:07.747Z and has not been modified since then. The CVE-2026-60668 vulnerability affects Oracle PeopleSoft Enterprise HCM Human Resources version 9.2, with a CVSS score of 8.2 and HIGH severity. The vulnerability allows unauthenticated attackers with network access via HTTP to compromise the [truncated]

HIGH Oracle Corporation CVE published 2026-07-21

CVE-2026-60667

The CVE-2026-60667 vulnerability is a difficult-to-exploit issue in Oracle PeopleSoft Enterprise HCM Human Resources version 9.2. It allows unauthenticated attackers with network access via TCP to compromise the system, potentially leading to unauthorized creation, deletion, or modification of critical data and causing a hang or frequently repeatable crash of the system. The CVSS 3.1 Base Score is 7.4, in [truncated]

MEDIUM Oracle Corporation CVE published 2026-07-21

CVE-2026-60666

The CVE-2026-60666 vulnerability is a difficult-to-exploit issue in Oracle PeopleSoft Enterprise HCM Human Resources version 9.2. It allows low privileged attackers with network access via Oracle Net to compromise the system. Successful attacks can result in unauthorized creation, deletion, or modification access to critical data or all PeopleSoft Enterprise HCM Human Resources accessible data, as well as [truncated]

HIGH Oracle Corporation CVE published 2026-07-21

CVE-2026-60665

AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record was published on 2026-07-21T22:18:07.380Z and has not been modified since then. The CVE-2026-60665 vulnerability affects PeopleSoft Enterprise HCM Global Payroll Switzerland 9.2, allowing low-privileged attackers with network access via HTTP to compromise the system. The vulnerability has a CVSS 3.1 Base Score of 8.2, indic [truncated]

CRITICAL Oracle Corporation CVE published 2026-07-21

CVE-2026-60663

The CVE-2026-60663 vulnerability affects Oracle WebCenter Content's Web Content Management component, with versions 12.2.1.4.0 and 14.1.2.0.0 being vulnerable. This critical vulnerability allows low-privileged attackers with network access via HTTP to compromise Oracle WebCenter Content, potentially impacting additional products due to scope change. The CVSS 3.1 Base Score is 9.9, indicating critical seve [truncated]

HIGH Oracle Corporation CVE published 2026-07-21

CVE-2026-60658

The CVE-2026-60658 vulnerability affects Oracle WebCenter Content, specifically the Content Server component, in versions 12.2.1.4.0 and 14.1.2.0.0. This difficult-to-exploit vulnerability allows unauthenticated attackers with network access via HTTP to potentially compromise the system, requiring human interaction. The CVSS 3.1 Base Score is 7.5, indicating high severity. Organizations should prioritize [truncated]

HIGH Oracle Corporation CVE published 2026-07-21

CVE-2026-60654

A vulnerability in Oracle WebCenter Content (component: Web Content Management) allows a low-privileged attacker with network access via HTTP to compromise the system. Successful attacks can result in takeover of Oracle WebCenter Content. The vulnerability has a CVSS score of 8.8 and affects versions 12.2.1.4.0 and 14.1.2.0.0. The vulnerability is easily exploitable and has high impacts on confidentiality [truncated]

HIGH Oracle Corporation CVE published 2026-07-21

CVE-2026-60653

AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record was published on 2026-07-21T22:18:06.253Z and has not been modified since then. The NVD entry is currently Undergoing Analysis. This vulnerability affects Oracle WebCenter Content, specifically versions 12.2.1.4.0 and 14.1.2.0.0, and has a CVSS score of 8.1, indicating high severity. The vulnerability allows low-privileged [truncated]

HIGH Oracle Corporation CVE published 2026-07-21

CVE-2026-60651

AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record for CVE-2026-60651 was published on 2026-07-21T22:18:06.010Z and has not been modified since then. This vulnerability affects Oracle WebCenter Content, specifically versions 12.2.1.4.0 and 14.1.2.0.0, and has a high CVSS score of 8.8. The vulnerability allows an unauthenticated attacker with network access via HTTP to compr [truncated]

HIGH Oracle Corporation CVE published 2026-07-21

CVE-2026-60650

A vulnerability was discovered in Oracle WebCenter Content, a component of Oracle Fusion Middleware. The vulnerability is rated as HIGH with a CVSS score of 8.0. It affects versions 12.2.1.4.0 and 14.1.2.0.0. An attacker with low privileges and network access via HTTP can exploit this vulnerability, which requires human interaction from another person. Successful attacks can lead to a takeover of Oracle W [truncated]

CRITICAL Oracle Corporation CVE published 2026-07-21

CVE-2026-60649

A critical vulnerability was discovered in Oracle WebCenter Content, a product of Oracle Fusion Middleware. The vulnerability, tracked as CVE-2026-60649, affects versions 12.2.1.4.0 and 14.1.2.0.0. It allows unauthenticated attackers with network access via HTTP to compromise the system, potentially leading to unauthorized creation, deletion, or modification of critical data. The vulnerability has a high [truncated]

HIGH Oracle Corporation CVE published 2026-07-21

CVE-2026-60648

A vulnerability was discovered in Oracle WebCenter Content, a product of Oracle Fusion Middleware, specifically in the Web Content Management component. The affected versions are 12.2.1.4.0 and 14.1.2.0.0. This vulnerability is easily exploitable by a low-privileged attacker with network access via HTTP, requiring human interaction from another person. Successful attacks can lead to the takeover of Oracle [truncated]

HIGH Oracle Corporation CVE published 2026-07-21

CVE-2026-60647

A vulnerability was discovered in Oracle WebCenter Content, a product of Oracle Fusion Middleware, specifically in the Web Content Management component. The vulnerability affects versions 12.2.1.4.0 and 14.1.2.0.0. It allows a low-privileged attacker with network access via HTTP to compromise the system, potentially leading to unauthorized access to critical data and partial denial of service. The CVSS 3. [truncated]

HIGH Oracle Corporation CVE published 2026-07-21

CVE-2026-60646

A vulnerability was discovered in Oracle WebCenter Content, a product of Oracle Fusion Middleware, specifically in the Web Content Management component. The affected versions are 12.2.1.4.0 and 14.1.2.0.0. This vulnerability is easily exploitable by a low-privileged attacker with network access via HTTP, requiring human interaction from another person. Successful attacks can lead to the takeover of Oracle [truncated]

HIGH Oracle Corporation CVE published 2026-07-21

CVE-2026-60645

A high-severity vulnerability was found in Oracle WebCenter Content, a product of Oracle Fusion Middleware. The vulnerability, tracked as CVE-2026-60645, affects versions 12.2.1.4.0 and 14.1.2.0.0. It allows high privileged attackers with network access via HTTP to compromise Oracle WebCenter Content, potentially leading to a takeover of the system. The CVSS 3.1 Base Score is 7.2, indicating high confiden [truncated]

CRITICAL Oracle Corporation CVE published 2026-07-21

CVE-2026-60644

A critical vulnerability was discovered in Oracle WebCenter Content, a product of Oracle Fusion Middleware. The vulnerability, tracked as CVE-2026-60644, affects versions 12.2.1.4.0 and 14.1.2.0.0. It is an easily exploitable vulnerability that allows unauthenticated attackers with network access via HTTP to compromise Oracle WebCenter Content. The vulnerability has a CVSS 3.1 Base Score of 10.0, indicati [truncated]

HIGH Oracle Corporation CVE published 2026-07-21

CVE-2026-60643

A vulnerability was discovered in Oracle WebCenter Content, a product of Oracle Fusion Middleware, specifically in the Content Server component. The affected versions are 12.2.1.4.0 and 14.1.2.0.0. This vulnerability is easily exploitable by a low-privileged attacker with network access via HTTP, requiring human interaction from another person. Successful attacks can lead to a takeover of Oracle WebCenter [truncated]

HIGH Oracle Corporation CVE published 2026-07-21

CVE-2026-60642

A vulnerability was discovered in Oracle WebCenter Content, a product of Oracle Fusion Middleware, specifically in the Content Server component. The affected versions are 12.2.1.4.0 and 14.1.2.0.0. This vulnerability allows an unauthenticated attacker with network access via HTTP to compromise Oracle WebCenter Content. Successful attacks require human interaction from a person other than the attacker and [truncated]

HIGH Oracle Corporation CVE published 2026-07-21

CVE-2026-60641

A high-severity vulnerability was discovered in Oracle WebCenter Content, specifically in the Content Server component. The affected versions are 12.2.1.4.0 and 14.1.2.0.0. This vulnerability allows an unauthenticated attacker with network access via HTTP to compromise Oracle WebCenter Content, potentially leading to unauthorized access to critical data or complete access to all Oracle WebCenter Content a [truncated]

HIGH Oracle Corporation CVE published 2026-07-21

CVE-2026-60640

A high-severity vulnerability was discovered in Oracle WebCenter Content, a product of Oracle Fusion Middleware. The vulnerability, tracked as CVE-2026-60640, has a CVSS score of 8.3 and can be exploited by an unauthenticated attacker with network access via HTTP. Successful attacks require human interaction and can result in the takeover of Oracle WebCenter Content. The vulnerability is located in the Co [truncated]

HIGH Oracle Corporation CVE published 2026-07-21

CVE-2026-60639

A high-severity vulnerability was found in Oracle WebCenter Content. This vulnerability, tracked as CVE-2026-60639, has a CVSS 3.1 Base Score of 8.8, indicating a high impact on confidentiality, integrity, and availability. The vulnerability affects Oracle WebCenter Content versions 12.2.1.4.0 and 14.1.2.0.0. It is easily exploitable by unauthenticated attackers with network access via HTTP, requiring hum [truncated]

HIGH Oracle Corporation CVE published 2026-07-21

CVE-2026-60638

A vulnerability was discovered in Oracle WebCenter Content, a product of Oracle Fusion Middleware, specifically in the Content Server component. The affected versions are 12.2.1.4.0 and 14.1.2.0.0. This vulnerability allows an unauthenticated attacker with network access via HTTP to compromise Oracle WebCenter Content. Successful attacks require human interaction from a person other than the attacker and [truncated]

HIGH Oracle Corporation CVE published 2026-07-21

CVE-2026-60637

A vulnerability was discovered in Oracle WebCenter Content, a product of Oracle Fusion Middleware, specifically in the Content Server component. The affected versions are 12.2.1.4.0 and 14.1.2.0.0. This vulnerability allows an unauthenticated attacker with network access via HTTP to compromise Oracle WebCenter Content. Successful attacks require human interaction from a person other than the attacker and [truncated]

HIGH Oracle Corporation CVE published 2026-07-21

CVE-2026-60636

A vulnerability was discovered in Oracle WebCenter Content, a product of Oracle Fusion Middleware, specifically in the Content Server component. The affected versions are 12.2.1.4.0 and 14.1.2.0.0. This vulnerability allows an unauthenticated attacker with network access via HTTP to compromise Oracle WebCenter Content. Successful attacks require human interaction from a person other than the attacker and [truncated]

HIGH Oracle Corporation CVE published 2026-07-21

CVE-2026-60635

A vulnerability was discovered in Oracle WebCenter Content, a product of Oracle Fusion Middleware, specifically in the Content Server component. The affected versions are 12.2.1.4.0 and 14.1.2.0.0. This vulnerability allows an unauthenticated attacker with network access via HTTP to compromise Oracle WebCenter Content. Successful attacks require human interaction from a person other than the attacker and [truncated]

HIGH Oracle Corporation CVE published 2026-07-21

CVE-2026-60634

A high-severity vulnerability was found in Oracle WebCenter Content. This CVE-2026-60634 vulnerability has a CVSS score of 8.8, indicating a high risk. It affects versions 12.2.1.4.0 and 14.1.2.0.0 of Oracle WebCenter Content. The vulnerability allows unauthenticated attackers with network access via HTTP to compromise the system. Successful attacks require human interaction from another person. If exploi [truncated]

HIGH Oracle Corporation CVE published 2026-07-21

CVE-2026-60633

A vulnerability was discovered in Oracle WebCenter Content, a product of Oracle Fusion Middleware, specifically in the Content Server component. The affected versions are 12.2.1.4.0 and 14.1.2.0.0. This vulnerability allows an unauthenticated attacker with network access via HTTP to compromise Oracle WebCenter Content. Successful attacks require human interaction from a person other than the attacker and [truncated]