Vulnerability in Oracle Identity Manager Product of Oracle Fusion Middleware
CVE-2026-71047
8.8HIGH
What is CVE-2026-71047?
A vulnerability exists in the Oracle Identity Manager component of Oracle Fusion Middleware, which could be exploited by low-privileged attackers with network access via HTTP. This flaw impacts supported versions 12.2.1.4.0 and 14.1.2.1.0, allowing adversaries to potentially compromise the integrity and confidentiality of the Oracle Identity Manager. If exploited successfully, this can lead to a complete takeover of the system. Organizations using the affected versions should prioritize applying security updates to mitigate risks associated with this vulnerability.
Affected Version(s)
Oracle Identity Manager 12.2.1.4.0
Oracle Identity Manager 14.1.2.1.0