Oracle Solaris Utility Vulnerability Affects Oracle Products
CVE-2026-61202

7.5HIGH

Key Information:

Vendor

Oracle

Vendor
CVE Published:
21 July 2026

What is CVE-2026-61202?

A vulnerability has been discovered in the Oracle Solaris product, specifically within its Utility component. Supported versions affected include 11.3 and 11.4. This vulnerability is challenging to exploit and allows an attacker with minimal privileges to log on to the Oracle Solaris infrastructure, leading to significant risks. Although initially contained within Oracle Solaris, the attacks could have far-reaching effects on interconnected systems, potentially compromising critical data. Successful exploitation could allow unauthorized creation, deletion, or modification of sensitive information, posing a serious threat to data confidentiality and integrity across all Oracle Solaris accessible data.

Affected Version(s)

Oracle Solaris 11.3

Oracle Solaris 11.4

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.