Oracle Enterprise Manager Base Platform Security Framework Vulnerability
CVE-2026-47000

3.5LOW

Key Information:

Vendor

Oracle

Vendor
CVE Published:
21 July 2026

What is CVE-2026-47000?

A vulnerability in the Oracle Enterprise Manager Base Platform's Security Framework allows a low privileged attacker, who has network access via HTTPS, to compromise the system. The attack requires human interaction from someone other than the attacker, potentially leading to unauthorized access, including the ability to update, insert, or delete sensitive data within the platform. Organizations using Oracle Enterprise Manager Base Platform version 24.1 should take precautions to mitigate the risk associated with this vulnerability.

Affected Version(s)

Oracle Enterprise Manager Base Platform 24.1

References

CVSS V3.1

Score:
3.5
Severity:
LOW
Confidentiality:
None
Integrity:
Low
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.