Vulnerability in Oracle Agile Engineering Data Management Product
CVE-2026-61190

6.4MEDIUM

Key Information:

Vendor

Oracle

Vendor
CVE Published:
21 July 2026

What is CVE-2026-61190?

A vulnerability exists in the Oracle Agile Engineering Data Management product that allows a low-privileged attacker with network access via HTTP to compromise accessible data. Exploitation of this vulnerability necessitates human interaction from a third party, which can lead to unauthorized creation, deletion, or modification of access to critical data. This could enable an attacker to gain unauthorized access to sensitive or critical information within the product, posing significant risks to data confidentiality and integrity.

Affected Version(s)

Oracle Agile Engineering Data Management 6.2.1

References

CVSS V3.1

Score:
6.4
Severity:
MEDIUM
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.