Security Vulnerability in Oracle Hyperion Financial Management by Oracle
CVE-2026-71144

3LOW

Key Information:

Vendor

Oracle

Vendor
CVE Published:
18 August 2026

What is CVE-2026-71144?

A security vulnerability exists in the Oracle Hyperion Financial Management product, specifically within its security component. This vulnerability affects the version 11.2.25.0.000. An attacker with high privileges who can log into the infrastructure where Oracle Hyperion Financial Management operates could exploit this weakness. Such an exploitation may lead to unauthorized updates, deletions, or insertions of data, as well as unauthorized reading of some accessible data within the system. This presents a significant risk to data confidentiality and integrity.

Affected Version(s)

Oracle Hyperion Financial Management 11.2.25.0.000

References

CVSS V3.1

Score:
3
Severity:
LOW
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.