<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Identity_manager on CVE Alert &amp; Security Feed</title><link>https://cvealert.net/products/identity_manager/</link><description>Recent content in Identity_manager on CVE Alert &amp; Security Feed</description><generator>Hugo</generator><language>en-us</language><lastBuildDate>Wed, 17 Jun 2026 10:53:58 +0000</lastBuildDate><atom:link href="https://cvealert.net/products/identity_manager/index.xml" rel="self" type="application/rss+xml"/><item><title>CVE-2026-46807</title><link>https://cvealert.net/posts/cve-2026-46807/</link><pubDate>Wed, 17 Jun 2026 10:53:58 +0000</pubDate><guid>https://cvealert.net/posts/cve-2026-46807/</guid><description>Vulnerability in the Identity Manager product of Oracle Fusion Middleware (component: OIM Legacy UI). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.1.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via T3, IIOP to compromise Identity Manager. Successful attacks of this vulnerability can result in takeover of Identity Manager. CVSS 3.1 Base Score 9.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H).</description></item><item><title>CVE-2026-46810</title><link>https://cvealert.net/posts/cve-2026-46810/</link><pubDate>Wed, 17 Jun 2026 10:53:58 +0000</pubDate><guid>https://cvealert.net/posts/cve-2026-46810/</guid><description>Vulnerability in the Identity Manager product of Oracle Fusion Middleware (component: End User Self Service). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.1.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via IIOP to compromise Identity Manager. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Identity Manager accessible data as well as unauthorized read access to a subset of Identity Manager accessible data. CVSS 3.1 Base Score 6.5 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N).</description></item><item><title>CVE-2026-35294</title><link>https://cvealert.net/posts/cve-2026-35294/</link><pubDate>Wed, 17 Jun 2026 10:40:21 +0000</pubDate><guid>https://cvealert.net/posts/cve-2026-35294/</guid><description>Vulnerability in the Identity Manager Connector product of Oracle Fusion Middleware (component: Mainframe Connectors). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.1.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Identity Manager Connector. While the vulnerability is in Identity Manager Connector, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in takeover of Identity Manager Connector. CVSS 3.1 Base Score 9.9 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H).</description></item><item><title>CVE-2026-35268</title><link>https://cvealert.net/posts/cve-2026-35268/</link><pubDate>Wed, 17 Jun 2026 10:40:19 +0000</pubDate><guid>https://cvealert.net/posts/cve-2026-35268/</guid><description>Vulnerability in the Identity Manager product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.1.0. Easily exploitable vulnerability allows low privileged attacker with network access via T3, IIOP to compromise Identity Manager. While the vulnerability is in Identity Manager, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in takeover of Identity Manager. CVSS 3.1 Base Score 9.9 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H).</description></item><item><title>CVE-2026-35269</title><link>https://cvealert.net/posts/cve-2026-35269/</link><pubDate>Wed, 17 Jun 2026 10:40:19 +0000</pubDate><guid>https://cvealert.net/posts/cve-2026-35269/</guid><description>Vulnerability in the Identity Manager product of Oracle Fusion Middleware (component: REST WebServices). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.1.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Identity Manager. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Identity Manager accessible data. CVSS 3.1 Base Score 7.5 (Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N).</description></item><item><title>CVE-2026-35265</title><link>https://cvealert.net/posts/cve-2026-35265/</link><pubDate>Wed, 17 Jun 2026 10:40:18 +0000</pubDate><guid>https://cvealert.net/posts/cve-2026-35265/</guid><description>Vulnerability in the Identity Manager product of Oracle Fusion Middleware (component: Security). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.1.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Identity Manager. Successful attacks of this vulnerability can result in takeover of Identity Manager. CVSS 3.1 Base Score 8.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H).</description></item><item><title>CVE-2026-35267</title><link>https://cvealert.net/posts/cve-2026-35267/</link><pubDate>Wed, 17 Jun 2026 10:40:18 +0000</pubDate><guid>https://cvealert.net/posts/cve-2026-35267/</guid><description>Vulnerability in the Identity Manager product of Oracle Fusion Middleware (component: REST WebServices). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.1.0. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Identity Manager. Successful attacks of this vulnerability can result in takeover of Identity Manager. CVSS 3.1 Base Score 8.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H).</description></item></channel></rss>