CVE-2026-47045: Medium severity Oracle Oracle Database Server - JDBC vulnerability
Vulnerability in the JDBC component of Oracle Database Server. Supported versions that are affected are 19.3-19.31, 21.3-21.22 and 23.4.0-23.26.2. Easily exploitable vulnerability allows high privileged attacker having None privilege with network access via Oracle Net to compromise JDBC. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in takeover of JDBC. CVSS 3.1 Base Score 6.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:H/I:H/A:H).
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-47045?
The severity of CVE-2026-47045 is classified as medium with a score of 6.8.
How do I fix CVE-2026-47045?
To fix CVE-2026-47045, Oracle recommends updating to the latest patched version of the Oracle Database Server.
What versions of Oracle Database Server are affected by CVE-2026-47045?
CVE-2026-47045 affects Oracle Database Server versions 19.3-19.31, 21.3-21.22, and 23.4.0-23.26.2.
What type of access is required to exploit CVE-2026-47045?
An attacker would require network access via Oracle Net to exploit CVE-2026-47045.
What components of Oracle Database Server are impacted by CVE-2026-47045?
CVE-2026-47045 specifically impacts the JDBC component of the Oracle Database Server.