Vulnerability in Oracle Enterprise Manager Platform - Oracle
CVE-2026-47005
7.2HIGH
Key Information:
- Vendor
Oracle
- Vendor
- CVE Published:
- 21 July 2026
What is CVE-2026-47005?
A significant access control vulnerability exists in the Oracle Enterprise Manager Base Platform, specifically within the Self Update Framework component. This vulnerability allows attackers with high privileges and network access via HTTPS to compromise the platform, which can lead to complete takeover of the system. Affected versions include 13.5 and 24.1. Organizations using these versions should prioritize addressing this issue to maintain the security of their Oracle Enterprise Manager installations.
Affected Version(s)
Oracle Enterprise Manager Base Platform 13.5
Oracle Enterprise Manager Base Platform 24.1