PT-2026-34135 · Oracle · Oracle Database Server+1

Aleksei Veremeev

·

Published

2026-04-21

·

Updated

2026-04-27

·

CVE-2026-34312

CVSS v3.1

2.4

Low

VectorAV:N/AC:L/PR:H/UI:R/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions Oracle Database Server versions 19.3 through 19.30
Description An issue exists in the RDBMS component of Oracle Database Server. A high-privileged attacker with Row Access Method privilege and network access via multiple protocols can compromise the RDBMS. This exploit requires human interaction from a person other than the attacker and can lead to unauthorized read access to a subset of accessible RDBMS data.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Access Control

Weakness Enumeration

Related Identifiers

CVE-2026-34312

Affected Products

Oracle Database Server
Database Server