CVE-2026-35287: High severity Oracle Oracle Application Testing Suite vulnerability
Vulnerability in Oracle Application Testing Suite. The supported version that is affected is 13.3.0.1. Easily exploitable vulnerability allows unauthenticated attacker with network access via TCP to compromise Oracle Application Testing Suite. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Application Testing Suite accessible data. CVSS 3.1 Base Score 7.5 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N).
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-35287?
The severity of CVE-2026-35287 is rated as high with a CVSS score of 7.5.
What is CVE-2026-35287 about?
CVE-2026-35287 is a vulnerability in Oracle Application Testing Suite that allows unauthenticated network access to compromise the software.
What version of Oracle Application Testing Suite is affected by CVE-2026-35287?
The affected version of Oracle Application Testing Suite is 13.3.0.1.
How do I fix CVE-2026-35287?
To mitigate CVE-2026-35287, ensure that you apply the latest security patches provided by Oracle.
Can CVE-2026-35287 be exploited remotely?
Yes, CVE-2026-35287 is easily exploitable by unauthenticated attackers with network access via TCP.