CNNVD-202601-3156 Information

CNNVD ID

CNNVD-202601-3156

CVE-2026-21939

  • CNNVD Published: 2026-01-20

Description (Chinese)

Oracle Database Server是美国甲骨文(Oracle)公司的一套关系数据库管理系统。该数据库管理系统提供数据管理、分布式处理等功能。 Oracle Database Server的SQLcl 23.4.0版本至23.26.0版本存在安全漏洞,该漏洞源于未经验证的攻击者可通过登录基础设施进行攻击,可能导致组件被接管。

Description (English)

Oracle Database Server is a relationship database management system for Oracle. The database management system provides data management, distributed processing and so on. The security gap between versions SQLcl 23.4.0 and 23.26.0 of Oracle Database Server ’ s version of SQLcl 23.4.0 stems from the fact that uncertified assailants can attack through access to the infrastructure, which may result in the components being taken over.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

甲骨文

Published

2026-01-20

Last Modified

2026-02-24

References

https://www.oracle.com/security-alerts/cpujan2026.html https://access.redhat.com/security/cve/cve-2026-21939

Patch

https://www.oracle.com/security-alerts/cpujan2026.html

Share on: