Vulnerability in Oracle Enterprise Manager Base Platform Affecting Oracle
CVE-2026-61298

5.6MEDIUM

Key Information:

Vendor

Oracle

Vendor
CVE Published:
18 August 2026

What is CVE-2026-61298?

A security vulnerability exists in Oracle Enterprise Manager Base Platform that could allow a low-privileged attacker with logon access to compromise the system. This vulnerability primarily affects supported versions 13.5 and 24.1. While directly related to the Enterprise Manager Base Platform, successful exploitation may lead to unauthorized access to critical data, potentially impacting other connected products within the Oracle ecosystem. The effect of exploitation can result in significant security breaches, thereby requiring urgent remediation efforts.

Affected Version(s)

Oracle Enterprise Manager Base Platform 13.5

Oracle Enterprise Manager Base Platform 24.1

References

CVSS V3.1

Score:
5.6
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.