Denial of Service Vulnerability in Oracle Siebel CRM End User Product
CVE-2026-47032

2.6LOW

Key Information:

Vendor

Oracle

Vendor
CVE Published:
21 July 2026

What is CVE-2026-47032?

A vulnerability in the Oracle Siebel CRM End User product, specifically within the Redwood UI component, may allow a highly privileged attacker with network access via HTTP to compromise the system. Although the exploitation of this vulnerability requires human interaction from someone other than the attacker, it poses significant risks, including the potential for a partial denial of service in Siebel CRM End User. This may inadvertently impact other products connected within the ecosystem, leading to broader security implications.

Affected Version(s)

Siebel CRM End User 24.4 <= 26.3

References

CVSS V3.1

Score:
2.6
Severity:
LOW
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
High
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.