Signal
Critical remote code execution vulnerability found in oracle identity and web services manager
Oracle has released a security advisory addressing a critical vulnerability (CVE-2026-21992) affecting Oracle Identity Manager and Oracle Web Services Manager versions 12.2.1.4.0 and 14.1.2.1.0. The flaw allows remote code execution without authentication and carries a CVSS score of 9.8.
redditrss
cvevulnerabilitysecurity_advisoryoracleincident_response
Evidence locked
Today's free sample is only available for the edition's flagship signal.
Evidence preview
- Canadian Centre for Cyber Security - Alertscyber.gc.ca
- Vulnerability in Oracle Identity Manager and Oracle Web Services ManagerNCSC-FI - Vulnerabilities