Unauthenticated Access Vulnerability in Oracle Identity Manager Connector by Oracle
CVE-2026-60992
8.1HIGH
Key Information:
- Vendor
Oracle
- Vendor
- CVE Published:
- 18 August 2026
What is CVE-2026-60992?
A security flaw exists in the Oracle Identity Manager Connector, which is a crucial component of Oracle Fusion Middleware. This vulnerability can be exploited by an unauthenticated attacker who has network access via TLS, potentially allowing them to compromise the Oracle Identity Manager Connector. Successful exploitation may lead to unauthorized takeover of the system, affecting the confidentiality, integrity, and availability of the Oracle Identity Manager services. It is vital for organizations using affected versions (12.2.1.4.0 and 14.1.2.1.0) to implement necessary security measures and updates.
Affected Version(s)
Oracle Identity Manager Connector 12.2.1.4.0
Oracle Identity Manager Connector 14.1.2.1.0