Vulnerability in Oracle Siebel CRM Integration REST Component
CVE-2026-60820

7.4HIGH

Key Information:

Vendor

Oracle

Vendor
CVE Published:
18 August 2026

What is CVE-2026-60820?

A vulnerability has been identified in the REST component of Oracle's Siebel CRM Integration that could allow an unauthenticated attacker with network access via HTTP to exploit the system. This flaw enables unauthorized creation, modification, or deletion of critical data. Given the scope of the impact, attackers could potentially gain access to all data accessible through the Siebel CRM Integration, compromising confidentiality and integrity. Organizations utilizing the affected versions of Siebel CRM Integration are strongly advised to assess their exposure and apply security mitigations as necessary.

Affected Version(s)

Siebel CRM Integration 17.0 <= 26.6

References

CVSS V3.1

Score:
7.4
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.