Database Upgrade Vulnerability in Oracle's Siebel CRM Deployment
CVE-2026-46888

7.8HIGH

Key Information:

Vendor

Oracle

Vendor
CVE Published:
16 June 2026

What is CVE-2026-46888?

A vulnerability exists in Oracle's Siebel CRM Deployment product, specifically within the Database Upgrade component. This issue allows low-privileged attackers with access to the infrastructure where the Siebel CRM Deployment operates to compromise the system. Exploitation of this flaw could potentially enable attackers to take control of the Siebel CRM Deployment environment, affecting the confidentiality, integrity, and availability of sensitive data.

Affected Version(s)

Siebel CRM Deployment 17.0 <= 26.5

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.