Security Vulnerability in Oracle Hyperion Financial Management by Oracle
CVE-2026-71123

5.4MEDIUM

Key Information:

Vendor

Oracle

Vendor
CVE Published:
18 August 2026

What is CVE-2026-71123?

A security vulnerability in Oracle Hyperion Financial Management allows an unauthenticated attacker with network access to exploit the system via HTTP. This vulnerability can lead to unauthorized updates, inserts, or deletions of data, as well as unauthorized read access to a subset of data. Successful exploitation requires human interaction from another individual, highlighting the need for awareness and robust security measures to safeguard sensitive information.

Affected Version(s)

Oracle Hyperion Financial Management 11.2.25.0.000

References

CVSS V3.1

Score:
5.4
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.