Denial of Service Vulnerability in Oracle Hyperion Financial Management by Oracle
CVE-2026-71105

4.7MEDIUM

Key Information:

Vendor

Oracle

Vendor
CVE Published:
18 August 2026

What is CVE-2026-71105?

A vulnerability exists in Oracle Hyperion Financial Management's security component, allowing low-privileged attackers with access to the infrastructure to exploit it. When successfully exploited, this vulnerability can lead to a denial of service condition, causing the application to become unresponsive or crash frequently. Users running version 11.2.25.0.000 need to be aware of this risk and implement appropriate mitigations as outlined in the vendor advisory.

Affected Version(s)

Oracle Hyperion Financial Management 11.2.25.0.000

References

CVSS V3.1

Score:
4.7
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.