CNNVD-202601-3111 Information

CNNVD ID

CNNVD-202601-3111

CVE-2026-21940

  • CNNVD Published: 2026-01-20

Description (Chinese)

Oracle Supply Chain是美国甲骨文(Oracle)公司的一套供应链解决方案。该产品提供价值链计划、价值链执行、产品生命周期管理等功能。 Oracle Supply Chain的Oracle Agile PLM 9.3.6版本存在安全漏洞,该漏洞源于未经验证的攻击者可通过HTTP网络访问进行攻击,可能导致未经授权访问关键数据。

Description (English)

Oracle Super Chain is a supply chain solution for Oracle. The product provides functions such as value chain planning, value chain implementation and product life cycle management. Oracle Agile PLM version 9.3.6 of Oracle Supply Chain has a security loophole, which stems from uncertified attackers who can attack via the HTTP network and may lead to unauthorized access to key data.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

甲骨文

Published

2026-01-20

Last Modified

2026-02-24

References

https://access.redhat.com/security/cve/cve-2026-21940 https://www.oracle.com/security-alerts/cpujan2026.html

Patch

https://www.oracle.com/security-alerts/cpujan2026.html

Share on: