CyberRota Analysis
AI-GeneratedA vulnerability exists in the Siebel CRM Integration component of Oracle Siebel CRM, affecting versions 17.0 to 26.6, which allows low-privileged attackers with network access via HTTP to compromise the integration. Exploitation can lead to significant impacts on confidentiality, integrity, and availability, potentially allowing for the takeover of the Siebel CRM Integration and affecting other connected products. Organizations using the affected versions should prioritize immediate remediation to mitigate the risk of exploitation.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
Vulnerability in the Siebel CRM Integration product of Oracle Siebel CRM (component: REST). Supported versions that are affected are 17.0-26.6. Difficult to exploit vulnerability allows low privileged attacker with network access via HTTP to compromise Siebel CRM Integration. While the vulnerability is in Siebel CRM Integration, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in takeover of Siebel CRM Integration. CVSS 3.1 Base Score 8.5 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H).
Related CVEs
Other vulnerabilities affecting the same vendor(s)