CVE-2026-21980 - Vulnerability in the Oracle Life Sciences Central

CVE-2026-21980 - Vulnerability in the Oracle Life Sciences Central

CVE ID : CVE-2026-21980 Published : Jan. 20, 2026, 10:16 p.m. | 43 minutes ago Description : Vulnerability in the Oracle Life Sciences Central Coding product of Oracle Health Sciences Applications (component: Platform). The supported version that is affected is 7.0.1.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Life Sciences Central Coding. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Life Sciences Central Coding accessible data as well as unauthorized read access to a subset of Oracle Life Sciences Central Coding accessible data. CVSS 3.1 Base Score 6.5 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N). Severity: 6.5 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details

Severity
MEDIUM
CVSS Score
3.1 / 10.0
Published
Jan. 20, 2026
Affected Product: Oracle Life
Attack Vector: network
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C