Unauthorized Access Vulnerability in Oracle Agile PLM MCAD Connector
CVE-2026-83274

5.5MEDIUM

Key Information:

Vendor

Oracle

Vendor
CVE Published:
15 September 2026

What is CVE-2026-83274?

A vulnerability exists in Oracle Agile PLM MCAD Connector, specifically in the CAX Client component, posing significant risks to data integrity. An attacker with low privileges and access to the infrastructure can exploit this flaw, potentially gaining unauthorized access to sensitive information managed by the Oracle Agile PLM MCAD Connector. This situation highlights the necessity for organizations to strengthen their security protocols and ensure timely updates are applied to mitigate risks associated with this vulnerability.

Affected Version(s)

Oracle Agile PLM MCAD Connector 3.6

References

CVSS V3.1

Score:
5.5
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.