CVE-2026-70735

Vulnerability in the Oracle Hyperion Profitability and Cost Management product of Oracle Hyperion (component: Deployment). The supported version that is affected is 11.2.25.0.000. Easily exploitable vulnerability allows high privileged attacker with network access via HTTP to compromise Oracle Hyperion Profitability and Cost Management. Successful attacks of this vulnerability can result in takeover of Oracle Hyperion Profitability and Cost Management. CVSS 3.1 Base Score 7.2 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H).
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:oracle:hyperion_profitability_and_cost_management:11.2.25.0.000:*:*:*:*:*:*:*

History

No history.

Information

Published : 2026-08-18 21:17

Updated : 2026-08-27 14:09


NVD link : CVE-2026-70735

Mitre link : CVE-2026-70735

CVE.ORG link : CVE-2026-70735


JSON object : View

Products Affected

oracle

  • hyperion_profitability_and_cost_management
CWE
CWE-284

Improper Access Control