


Perceptive Security
SOC/SIEM Consultancy

Vulnerability in the Net Service component of Oracle Database Server. Supported versions that are affected are 23.4.0-23.26.2. Difficult to exploit vulnerabili…
Published:
27 mei 2026 om 22:00:00
Alert date:
28 mei 2026 om 22:04:22
Source:
nvd.nist.gov
Database & Storage, Enterprise Applications
Critical vulnerability in Oracle Database Server Net Service component affecting versions 23.4.0-23.26.2. Allows unauthenticated attackers with network access via TLS to compromise Net Service. Despite being difficult to exploit, successful attacks can result in complete takeover of Net Service with potential impact on additional products due to scope change. CVSS 3.1 Base Score of 9.0 indicates high impact on confidentiality, integrity, and availability.
Technical details
Mitigation steps:
Affected products:
Oracle Database Server
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2026-46833
https://www.oracle.com/security-alerts/cspumay2026.html
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
