CVE-2026-47046

Vulnerability in the RDBMS component of Oracle Database Server. Supported versions that are affected are 23.4.0-23.26.2. Easily exploitable vulnerability allows unauthenticated attacker with network access via Oracle Net to compromise RDBMS. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of RDBMS as well as unauthorized update, insert or delete access to some of RDBMS accessible data. CVSS 3.1 Base Score 8.2 (Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:H).
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:oracle:database_server:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2026-07-21 22:17

Updated : 2026-08-06 13:42


NVD link : CVE-2026-47046

Mitre link : CVE-2026-47046

CVE.ORG link : CVE-2026-47046


JSON object : View

Products Affected

oracle

  • database_server
CWE
CWE-400

Uncontrolled Resource Consumption