LIVE · cybersecurity feed
Live wire
cve recordhigh

CVE-2026-70964

oracle · hyperion infrastructure technology

Published
CVSS8.2
Severityhigh
WeaknessCWE-284
ExploitedNot in CISA KEV

CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:N

Description

Vulnerability in the Oracle Hyperion Infrastructure Technology product of Oracle Hyperion (component: Installation and Configuration). The supported version that is affected is 11.2.25.0.000. Difficult to exploit vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Hyperion Infrastructure Technology. While the vulnerability is in Oracle Hyperion Infrastructure Technology, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle Hyperion Infrastructure Technology accessible data as well as unaut

References

← Back to the CVE Tracker

Our coverage of CVE-2026-70964

No stories yet. This page updates automatically when we publish reporting that references CVE-2026-70964.