Vulnerability in Oracle Hyperion Financial Management by Oracle
CVE-2026-71118

4.8MEDIUM

Key Information:

Vendor

Oracle

Vendor
CVE Published:
18 August 2026

What is CVE-2026-71118?

A vulnerability exists in Oracle Hyperion Financial Management, where an unauthenticated attacker with network access can potentially exploit the system. This could lead to unauthorized modifications, deletions, or reads of some accessible data. The affected version, 11.2.25.0.000, may expose sensitive data through HTTP, highlighting the need for immediate attention and remediation to safeguard against unauthorized access.

Affected Version(s)

Oracle Hyperion Financial Management 11.2.25.0.000

References

CVSS V3.1

Score:
4.8
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.