CVE-2026-47032: Low severity Oracle Oracle Siebel CRM End User (Redwood UI) vulnerability
Vulnerability in the Siebel CRM End User product of Oracle Siebel CRM (component: Redwood UI). Supported versions that are affected are 24.4-26.3. Difficult to exploit vulnerability allows high privileged attacker with network access via HTTP to compromise Siebel CRM End User. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Siebel CRM End User, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in unauthorized ability to cause a partial denial of service (partial DOS) of Siebel CRM End User. CVSS 3.1 Base Score 2.6 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:H/UI:R/S:C/C:N/I:N/A:L).
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-47032?
The severity of CVE-2026-47032 is low with a score of 2.6.
How can I fix CVE-2026-47032?
To fix CVE-2026-47032, update to a non-affected version of Oracle Siebel CRM End User (Redwood UI).
What are the affected versions for CVE-2026-47032?
The affected versions for CVE-2026-47032 are Oracle Siebel CRM End User versions 24.4 through 26.3.
Who can exploit CVE-2026-47032?
CVE-2026-47032 can be exploited by a high privileged attacker with network access via HTTP.
What type of vulnerability is CVE-2026-47032?
CVE-2026-47032 is categorized as a difficult to exploit vulnerability.