CVE-2026-21974 - Vulnerability in the Oracle Life Sciences Central

CVE-2026-21974 - Vulnerability in the Oracle Life Sciences Central

CVE ID : CVE-2026-21974 Published : Jan. 20, 2026, 10:16 p.m. | 43 minutes ago Description : Vulnerability in the Oracle Life Sciences Central Designer product of Oracle Health Sciences Applications (component: Platform). The supported version that is affected is 7.0.1.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Life Sciences Central Designer. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Oracle Life Sciences Central Designer accessible data. CVSS 3.1 Base Score 5.3 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N). Severity: 5.3 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details

Severity
MEDIUM
CVSS Score
3.1 / 10.0
Published
Jan. 20, 2026
Affected Product: Oracle Life
Attack Vector: network
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C