THREATOPS
THREAT OPSThreat News › [NVD] CVE-2026-70852 (HIGH 8.2) — Vulnerability in the Oracle Demand Planning product of Oracle Supply Chain (component: Internal Operations). Supported versions that are affected are 12.1 and 12.2. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracl

[NVD] CVE-2026-70852 (HIGH 8.2) — Vulnerability in the Oracle Demand Planning product of Oracle Supply Chain (component: Internal Operations). Supported versions that are affected are 12.1 and 12.2. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracl

mednvdPublished 2026-08-18

CVE-2026-70852 CVSS: 8.2 HIGH Published: 2026-08-18T21:17:41.210

Vulnerability in the Oracle Demand Planning product of Oracle Supply Chain (component: Internal Operations). Supported versions that are affected are 12.1 and 12.2. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Demand Planning. Successful attacks of this vulnera

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-70852