CVE-2026-21976
BaseFortify
Publication date: 2026-01-20
Last updated on: 2026-01-29
Assigner: Oracle
Description
Description
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| oracle | business_intelligence | 7.6.0.0.0 |
| oracle | business_intelligence | 8.2.0.0.0 |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-NVD-CWE-noinfo |
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?
This vulnerability exists in Oracle Business Intelligence Enterprise Edition versions 7.6.0.0.0 and 8.2.0.0.0. It allows a low privileged attacker who has logon access to the infrastructure where the product runs to compromise the Oracle Business Intelligence Enterprise Edition. The attacker can gain unauthorized capabilities to create, delete, or modify critical data or access all data accessible by the product without needing user interaction.
How can this vulnerability impact me? :
The vulnerability can lead to unauthorized creation, deletion, or modification of critical data within Oracle Business Intelligence Enterprise Edition. It can also result in unauthorized access to all data accessible by the product, potentially compromising confidentiality and integrity of sensitive information.