Vulnerability in Oracle Siebel CRM Application Interface
CVE-2026-60791

8.1HIGH

Key Information:

Vendor

Oracle

Vendor
CVE Published:
18 August 2026

What is CVE-2026-60791?

A vulnerability has been identified in the Application Interface component of Oracle's Siebel CRM Deployment. This weakness allows an unauthenticated attacker, with physical access to the network segment where the Siebel CRM operates, to exploit the system and gain unauthorized access. Successful exploitation can lead to the unauthorized creation, deletion, or alteration of critical data, impacting confidentiality and integrity. It is essential for organizations using supported versions 17.0 to 26.6 to assess their security posture and implement necessary mitigations to protect sensitive data.

Affected Version(s)

Siebel CRM Deployment 17.0 <= 26.6

References

CVSS V3.1

Score:
8.1
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.