{"id":"CVE-2026-83212","title":"Vulnerability in the Siebel Apps - Self Service product of Oracle Siebel CRM (component: Helpdesk/Training)","summary":"Vulnerability in the Siebel Apps - Self Service product of Oracle Siebel CRM (component: Helpdesk/Training).  Supported versions that are affected are 17.0-26.7. Easily exploitable vulnerability allows low privileged attacker with networ…","severity":"high","cvss":8.8,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","cwe":["CWE-269"],"vendor":"Oracle Corporation","product":"Siebel Apps - Self Service","affected":["siebel_apps_-_self_service >= 17.0 <= 26.7"],"published":"2026-09-15","updated":"2026-09-17","sourceUpdated":"2026-09-17T14:17:36.530","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-83212","references":[{"url":"https://www.oracle.com/security-alerts/cspusep2026.html","label":"secalert_us@oracle.com"}],"tags":["nvd","cve.org"],"ssvc":{"exploitation":"none","automatable":"no","technicalImpact":"total","timestamp":"2026-09-17T13:01:34.624731Z"},"epss":0.00417,"epssPercentile":0.33387,"ingestedAt":"2026-09-15T20:44:02.488Z","slug":"CVE-2026-83212","body":"## Overview\n\nVulnerability in the Siebel Apps - Self Service product of Oracle Siebel CRM (component: Helpdesk/Training).  Supported versions that are affected are 17.0-26.7. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Siebel Apps - Self Service.  Successful attacks of this vulnerability can result in takeover of Siebel Apps - Self Service. CVSS 3.1 Base Score 8.8 (Confidentiality, Integrity and Availability impacts).  CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H).\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"twilight","depthScore":48,"depthScoreParts":{"impact":48.4,"likelihood":0.1,"exploitation":0,"ransomware":0},"changes":[]}