Vulnerability in the Siebel CRM Deployment product of Oracle Siebel CRM (component: Installation). Supported versions that are affected are 17.0-26.6. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Siebel CRM Deployment executes to compromise Siebel CRM Deployment. Successful attacks of this vulnerability can result in takeover of Siebel CRM Deployment. CVSS 3.1 Base Score 7.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H).
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://www.oracle.com/security-alerts/cspuaug2026.html |
|
History
Wed, 02 Sep 2026 17:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Oracle siebel Crm
|
|
| CPEs | cpe:2.3:a:oracle:siebel_crm:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Oracle siebel Crm
|
Fri, 21 Aug 2026 18:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Local Privileged Logon Enables Full Compromise of Oracle Siebel CRM Deployment |
Fri, 21 Aug 2026 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Low-Privilege Logon Compromise Enables Full Siebel CRM Deployment Takeover | |
| Weaknesses | CWE-732 |
Wed, 19 Aug 2026 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 18 Aug 2026 23:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Low-Privilege Logon Compromise Enables Full Siebel CRM Deployment Takeover | |
| Weaknesses | CWE-284 CWE-732 |
Tue, 18 Aug 2026 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Vulnerability in the Siebel CRM Deployment product of Oracle Siebel CRM (component: Installation). Supported versions that are affected are 17.0-26.6. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Siebel CRM Deployment executes to compromise Siebel CRM Deployment. Successful attacks of this vulnerability can result in takeover of Siebel CRM Deployment. CVSS 3.1 Base Score 7.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H). | |
| First Time appeared |
Oracle
Oracle siebel Crm Deployment |
|
| CPEs | cpe:2.3:a:oracle:siebel_crm_deployment:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Oracle
Oracle siebel Crm Deployment |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: oracle
Published: 2026-08-18T20:59:05.822Z
Updated: 2026-08-20T03:56:45.512Z
Reserved: 2026-07-08T15:51:55.587Z
Link: CVE-2026-60753
Updated: 2026-08-19T19:07:36.571Z
Status : Analyzed
Published: 2026-08-18T21:16:41.927
Modified: 2026-09-02T17:33:22.663
Link: CVE-2026-60753
No data.