Vulnerability in Oracle Agile Engineering Data Management Product
CVE-2026-70712

6.4MEDIUM

Key Information:

Vendor

Oracle

Vendor
CVE Published:
18 August 2026

What is CVE-2026-70712?

A vulnerability exists in Oracle Agile Engineering Data Management that could be exploited by a high-privileged attacker who has access to the underlying infrastructure. This vulnerability could lead to the compromise of the product's functions, enabling unauthorized takeover and manipulation of sensitive data. The affected version is 6.2.1, and while exploiting this vulnerability is complex, it poses significant risks to data confidentiality, integrity, and availability. As such, organizations using this product should take immediate steps to mitigate the potential impacts associated with this security flaw.

Affected Version(s)

Oracle Agile Engineering Data Management 6.2.1

References

CVSS V3.1

Score:
6.4
Severity:
MEDIUM
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.