Metrics
Affected Vendors & Products
No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
| Link | Providers |
|---|---|
| https://www.oracle.com/security-alerts/cspuaug2026.html |
|
Wed, 19 Aug 2026 22:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Low-Privilege Oracle Agile PLM MCAD Connector Data Manipulation and Partial Denial of Service Requires Human Interaction |
Wed, 19 Aug 2026 13:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 19 Aug 2026 05:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Low-Privilege Oracle Agile PLM MCAD Connector Data Manipulation and Partial Denial of Service Requires Human Interaction | |
| Weaknesses | CWE-284 |
Tue, 18 Aug 2026 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Vulnerability in the Oracle Agile PLM MCAD Connector product of Oracle Supply Chain (component: CAX Client). The supported version that is affected is 3.6. Difficult to exploit vulnerability allows low privileged attacker with logon to the infrastructure where Oracle Agile PLM MCAD Connector executes to compromise Oracle Agile PLM MCAD Connector. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Agile PLM MCAD Connector accessible data as well as unauthorized read access to a subset of Oracle Agile PLM MCAD Connector accessible data and unauthorized ability to cause a partial denial of service (partial DOS) of Oracle Agile PLM MCAD Connector. CVSS 3.1 Base Score 4.2 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:L/I:L/A:L). | |
| First Time appeared |
Oracle
Oracle agile Plm Mcad Connector |
|
| CPEs | cpe:2.3:a:oracle:agile_plm_mcad_connector:3.6:*:*:*:*:*:*:* | |
| Vendors & Products |
Oracle
Oracle agile Plm Mcad Connector |
|
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: oracle
Published:
Updated: 2026-08-19T12:55:08.075Z
Reserved: 2026-08-04T22:06:34.615Z
Link: CVE-2026-71078
Updated: 2026-08-19T12:09:25.897Z
Status : Analyzed
Published: 2026-08-18T21:18:07.950
Modified: 2026-08-24T17:08:17.487
Link: CVE-2026-71078
No data.
OpenCVE Enrichment
Updated: 2026-08-19T22:30:05Z