Critical Vulnerability in Oracle Identity Manager Connector of Oracle Fusion Middleware
CVE-2026-83026

8.3HIGH

Key Information:

Vendor

Oracle

Vendor
CVE Published:
15 September 2026

What is CVE-2026-83026?

This vulnerability affects the Oracle Identity Manager Connector within the Oracle Fusion Middleware suite. An unauthenticated attacker who has access to the physical communication segment where the Oracle Identity Manager Connector operates can potentially compromise the connector. The security breach may not only affect the connector itself but can have broader implications for other connected products. Attackers exploiting this vulnerability can take over the Oracle Identity Manager Connector, thereby impacting confidentiality, integrity, and availability of the system.

Affected Version(s)

Oracle Identity Manager Connector 12.2.1.4.0

Oracle Identity Manager Connector 14.1.2.1.0

References

CVSS V3.1

Score:
8.3
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Adjacent Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.