Vulnerability in Oracle Agile Engineering Data Management Product
CVE-2026-87260

7.3HIGH

Key Information:

Vendor

Oracle

Vendor
CVE Published:
15 September 2026

What is CVE-2026-87260?

This vulnerability presents an improper access control issue in the Oracle Agile Engineering Data Management product, specifically within the Engineering Communication Interface. It allows a low privileged attacker, who has access to the physical communication segment near the hardware, to compromise the system. Successful exploitation can lead to unauthorized creation, modification, or deletion of critical data, granting the attacker extensive access to all data managed by Oracle Agile Engineering Data Management. Organizations using version 6.2.1 should take immediate precautions to secure their environments.

Affected Version(s)

Oracle Agile Engineering Data Management 6.2.1

References

CVSS V3.1

Score:
7.3
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.