Unauthorized Data Access Vulnerability in Oracle Agile PLM Product by Oracle
CVE-2026-87252

6.8MEDIUM

Key Information:

Vendor

Oracle

Vendor
CVE Published:
15 September 2026

What is CVE-2026-87252?

A vulnerability in the Oracle Agile PLM product allows an unauthenticated attacker with physical access to the communication segment of the hardware running Oracle Agile PLM to compromise its functionality. Exploitation of this vulnerability can lead to unauthorized creation, deletion, or modification of critical data and can grant complete access to all data managed by Oracle Agile PLM. This poses a significant threat to data integrity and confidentiality within the system.

Affected Version(s)

Oracle Agile PLM 9.3.6

References

CVSS V3.1

Score:
6.8
Severity:
MEDIUM
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Adjacent Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.