Vulnerability in Oracle Identity Manager Connector of Oracle Fusion Middleware
CVE-2026-83028

7.5HIGH

Key Information:

Vendor

Oracle

Vendor
CVE Published:
15 September 2026

What is CVE-2026-83028?

A security vulnerability exists in the Oracle Identity Manager Connector component of Oracle Fusion Middleware that could allow an unauthenticated attacker with access to a physical communication segment to compromise the connector. This vulnerability enables the potential takeover of the Oracle Identity Manager Connector, posing risks to the confidentiality, integrity, and availability of the affected systems. Organizations using versions 12.2.1.4.0 and 14.1.2.1.0 are urged to review their systems for potential exposure.

Affected Version(s)

Oracle Identity Manager Connector 12.2.1.4.0

Oracle Identity Manager Connector 14.1.2.1.0

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Adjacent Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.