Vulnerability in Oracle Identity Manager Product by Oracle
CVE-2026-60329
9.8CRITICAL
What is CVE-2026-60329?
The vulnerability discovered in the Oracle Identity Manager component of Oracle Fusion Middleware poses a risk where an unauthenticated attacker with network access can exploit the system. Targeting the OIM Legacy UI, this flaw enables attackers to gain unauthorized access, potentially leading to a complete takeover of the Oracle Identity Manager. Supported versions 12.2.1.4.0 and 14.1.2.1.0 are particularly susceptible, highlighting the need for immediate action to secure these installations.
Affected Version(s)
Oracle Identity Manager 12.2.1.4.0
Oracle Identity Manager 14.1.2.1.0