Remote Code Execution Vulnerability in Oracle Advanced Inbound Telephony by Oracle
CVE-2026-34275
9.8CRITICAL
Key Information:
- Vendor
Oracle
- Vendor
- CVE Published:
- 21 April 2026
What is CVE-2026-34275?
A vulnerability exists in the Oracle Advanced Inbound Telephony component of the Oracle E-Business Suite. It is characterized as a remote code execution flaw which permits unauthenticated attackers with HTTP network access to exploit the system. If successfully executed, this vulnerability can lead to unauthorized control and compromise of the Oracle Advanced Inbound Telephony service, impacting the confidentiality, integrity, and availability of the affected system.
Affected Version(s)
Oracle Advanced Inbound Telephony 12.2.3 <= 12.2.15