Remote Code Execution Vulnerability in Oracle Siebel CRM Integration
CVE-2026-62588

9.9CRITICAL

Key Information:

Vendor

Oracle

Vendor
CVE Published:
18 August 2026

What is CVE-2026-62588?

An identified vulnerability in Oracle's Siebel CRM Integration component allows low privileged attackers with network access via HTTP to potentially exploit the system. While primarily affecting the Siebel CRM Integration product, this vulnerability may have a broader impact on associated modules, enabling unauthorized access and takeover. It highlights the urgent need for patches and security updates to maintain the integrity and confidentiality of the entire system. For detailed guidance on addressing this flaw, refer to the Oracle Advisory.

Affected Version(s)

Siebel CRM Integration 25.12 <= 26.6

References

CVSS V3.1

Score:
9.9
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.