PT-2026-34143 · Oracle · Oracle Financial Services Analytical Applications Infrastructure

Published

2026-04-21

·

Updated

2026-04-26

·

CVE-2026-34321

CVSS v3.1

4.8

Medium

VectorAV:N/AC:H/PR:L/UI:R/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Oracle Financial Services Analytical Applications Infrastructure versions 8.0.7.9, 8.0.8.7 and 8.1.2.5
Description An issue in the User Interface component allows a low privileged attacker with network access via HTTP to compromise the system. This flaw requires human interaction from a person other than the attacker and is difficult to exploit. Successful exploitation can lead to unauthorized access to critical data or complete access to all accessible data within the infrastructure.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Authorization

Weakness Enumeration

Related Identifiers

CVE-2026-34321

Affected Products

Oracle Financial Services Analytical Applications Infrastructure