Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
| Link | Providers |
|---|---|
| https://www.oracle.com/security-alerts/cspusep2026.html |
|
Thu, 17 Sep 2026 04:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Unauthenticated HTTP Access Allows Unauthorized Data Modification in Oracle Siebel CRM Cloud Applications |
Wed, 16 Sep 2026 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 16 Sep 2026 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-284 |
Tue, 15 Sep 2026 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Vulnerability in the Siebel CRM Cloud Applications product of Oracle Siebel CRM (component: Siebel Cloud Manager). Supported versions that are affected are 22.3-26.7. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Siebel CRM Cloud Applications. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Siebel CRM Cloud Applications accessible data as well as unauthorized update, insert or delete access to some of Siebel CRM Cloud Applications accessible data. CVSS 3.1 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:N). | |
| First Time appeared |
Oracle
Oracle siebel Crm Cloud Applications |
|
| CPEs | cpe:2.3:a:oracle:siebel_crm_cloud_applications:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Oracle
Oracle siebel Crm Cloud Applications |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: oracle
Published:
Updated: 2026-09-16T17:58:49.786Z
Reserved: 2026-08-31T15:40:57.338Z
Link: CVE-2026-83078
Updated: 2026-09-16T17:52:10.317Z
Status : Awaiting Analysis
Published: 2026-09-15T20:18:17.487
Modified: 2026-09-16T19:40:00.317
Link: CVE-2026-83078
No data.
OpenCVE Enrichment
Updated: 2026-09-17T04:30:08Z