CVE-2026-60357: Low severity Oracle Siebel CRM Integration vulnerability
Vulnerability in the Siebel CRM Integration product of Oracle Siebel CRM (component: Siebel Server Sync for Exchange). Supported versions that are affected are 17.0-26.5. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTP to compromise Siebel CRM Integration. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Siebel CRM Integration accessible data. CVSS 3.1 Base Score 3.7 (Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N).
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-60357?
The severity of CVE-2026-60357 is classified as low, with a CVSS score of 3.7.
How do I fix CVE-2026-60357?
To fix CVE-2026-60357, ensure that you apply the latest patches for Oracle Siebel CRM Integration.
What versions are affected by CVE-2026-60357?
The affected versions for CVE-2026-60357 are Oracle Siebel CRM Integration versions 17.0 to 26.5.
Can CVE-2026-60357 be exploited remotely?
Yes, CVE-2026-60357 can be exploited by an unauthenticated attacker with network access via HTTP.
What component of Oracle Siebel CRM is affected by CVE-2026-60357?
CVE-2026-60357 affects the Siebel Server Sync for Exchange component of the Oracle Siebel CRM Integration.