PT-2026-62193 · Oracle · Siebel Crm End User
CVE-2026-47032
·
Published
2026-07-21
·
Updated
2026-07-21
CVSS v3.1
2.6
Low
| Vector | AV:N/AC:H/PR:H/UI:R/S:C/C:N/I:N/A:L |
Name of the Vulnerable Software and Affected Versions
Oracle Siebel CRM End User versions 24.4 through 26.3
Description
A flaw exists in the Redwood UI component of the Siebel CRM End User product. A high privileged attacker with network access via HTTP can compromise the system, potentially leading to a partial denial of service (partial DOS). Successful exploitation is difficult and requires human interaction from a user other than the attacker. Although the issue resides in the Siebel CRM End User, the impact may extend to additional products due to a scope change.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
DoS
Improper Access Control
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Siebel Crm End User