THREATOPS
THREAT OPSThreat News › [NVD] CVE-2026-60454 (HIGH 7.8) — Vulnerability in the Oracle HTTP Server product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle HTTP

[NVD] CVE-2026-60454 (HIGH 7.8) — Vulnerability in the Oracle HTTP Server product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle HTTP

mednvdPublished 2026-07-21

CVE-2026-60454 CVSS: 7.8 HIGH Published: 2026-07-21T22:17:47.857

Vulnerability in the Oracle HTTP Server product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle HTTP Server executes to compromise Oracle HTTP Server. Suc

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-60454