Vulnerability in Oracle's Siebel CRM Integration Affects Data Integrity
CVE-2026-62591

8.1HIGH

Key Information:

Vendor

Oracle

Vendor
CVE Published:
18 August 2026

What is CVE-2026-62591?

An access control vulnerability exists in Oracle's Siebel CRM Integration component, enabling remote attackers to exploit the system. This issue is particularly critical for organizations utilizing versions 25.12 to 26.6. An unauthenticated attacker with network access can compromise the Siebel CRM Integration by tricking a user into performing specific actions. Consequently, such an attack can lead to unauthorized operations, such as the creation, deletion, or modification of sensitive data. Attackers may gain critical access to all data processed by the Siebel CRM Integration, posing significant risks to confidentiality and data integrity.

Affected Version(s)

Siebel CRM Integration 25.12 <= 26.6

References

CVSS V3.1

Score:
8.1
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.