Vulnerability in the Oracle Hyperion Infrastructure Technology product of Oracle Hyperion (component: Installation and Configuration). The supported version that is affected is 11.2.25.0.000. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle Hyperion Infrastructure Technology executes to compromise Oracle Hyperion Infrastructure Technology. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Hyperion Infrastructure Technology accessible data. CVSS 3.1 Base Score 5.5 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N).
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://www.oracle.com/security-alerts/cspuaug2026.html |
|
History
Wed, 26 Aug 2026 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 21 Aug 2026 12:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Local Vulnerability Allowing Unauthorized Data Access in Oracle Hyperion Infrastructure Technology | |
| Weaknesses | CWE-200 CWE-284 |
Fri, 21 Aug 2026 10:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Exploitable Local Privilege Escalation in Oracle Hyperion Installation and Configuration | |
| Weaknesses | CWE-284 |
Wed, 19 Aug 2026 01:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Exploitable Local Privilege Escalation in Oracle Hyperion Installation and Configuration | |
| Weaknesses | CWE-284 |
Tue, 18 Aug 2026 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Vulnerability in the Oracle Hyperion Infrastructure Technology product of Oracle Hyperion (component: Installation and Configuration). The supported version that is affected is 11.2.25.0.000. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle Hyperion Infrastructure Technology executes to compromise Oracle Hyperion Infrastructure Technology. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Hyperion Infrastructure Technology accessible data. CVSS 3.1 Base Score 5.5 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N). | |
| First Time appeared |
Oracle
Oracle hyperion Infrastructure Technology |
|
| CPEs | cpe:2.3:a:oracle:hyperion_infrastructure_technology:11.2.25.0.000:*:*:*:*:*:*:* | |
| Vendors & Products |
Oracle
Oracle hyperion Infrastructure Technology |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: oracle
Published: 2026-08-18T21:00:32.962Z
Updated: 2026-08-26T15:25:40.196Z
Reserved: 2026-07-14T14:54:48.742Z
Link: CVE-2026-62573
Updated: 2026-08-26T13:45:26.858Z
Status : Analyzed
Published: 2026-08-18T21:17:09.190
Modified: 2026-08-27T17:18:32.443
Link: CVE-2026-62573
No data.