No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
| Link | Providers |
|---|---|
| https://www.oracle.com/security-alerts/cpuapr2026.html |
|
Wed, 22 Apr 2026 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-284 | |
| Metrics |
ssvc
|
Wed, 22 Apr 2026 07:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Unauthenticated HTTP Access Control Flaw in Oracle Life Sciences InForm | |
| Weaknesses | CWE-200 |
Wed, 22 Apr 2026 05:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Unauthenticated HTTP Remote Access Vulnerability Allowing Data Modification in Oracle Life Sciences InForm | |
| Weaknesses | CWE-284 |
Wed, 22 Apr 2026 02:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Unauthenticated HTTP Remote Access Vulnerability Allowing Data Modification in Oracle Life Sciences InForm | |
| Weaknesses | CWE-284 |
Wed, 22 Apr 2026 00:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Vulnerability in the Oracle Life Sciences InForm product of Oracle Life Science Applications (component: App Server). Supported versions that are affected are 7.0.1.0 and 7.0.1.1. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Life Sciences InForm. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Oracle Life Sciences InForm accessible data as well as unauthorized read access to a subset of Oracle Life Sciences InForm accessible data. CVSS 3.1 Base Score 6.5 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N). | |
| First Time appeared |
Oracle
Oracle life Sciences Inform |
|
| CPEs | cpe:2.3:a:oracle:life_sciences_inform:7.0.1.0:*:*:*:*:*:*:* cpe:2.3:a:oracle:life_sciences_inform:7.0.1.1:*:*:*:*:*:*:* |
|
| Vendors & Products |
Oracle
Oracle life Sciences Inform |
|
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: oracle
Published:
Updated: 2026-04-22T15:34:32.777Z
Reserved: 2026-03-26T19:48:45.682Z
Link: CVE-2026-34324
Updated: 2026-04-22T15:20:22.245Z
Status : Awaiting Analysis
Published: 2026-04-21T21:16:38.080
Modified: 2026-04-22T21:24:26.997
Link: CVE-2026-34324
No data.
OpenCVE Enrichment
Updated: 2026-04-22T07:30:11Z