Security Vulnerability in Oracle Hyperion Financial Management by Oracle
CVE-2026-71117

7.5HIGH

Key Information:

Vendor

Oracle

Vendor
CVE Published:
18 August 2026

What is CVE-2026-71117?

An exploitable security vulnerability exists in Oracle Hyperion Financial Management, specifically affecting version 11.2.25.0.000. This vulnerability allows a highly privileged attacker, who has access to the infrastructure where the software operates, to exploit the system. While primarily affecting Oracle Hyperion Financial Management, the implications of this vulnerability extend beyond it, potentially impacting other related products. If successfully executed, attackers could take control of the Oracle Hyperion Financial Management system, leading to severe ramifications in terms of confidentiality, integrity, and availability.

Affected Version(s)

Oracle Hyperion Financial Management 11.2.25.0.000

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
High
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.