Junglewise Threat Intelligence

CVE-2026-83222: Oracle Siebel CRM Deployment denial of service in Server Infrastructure

CVE-2026-83222 · Severity: high · CVSS 7.5 · Published 2026-09-15

Executive brief

Oracle Siebel CRM Deployment is a customer relationship management platform used by enterprises to manage sales, service, and customer interactions. An unauthenticated attacker can remotely crash or hang the Siebel server through multiple network protocols, causing complete service unavailability and business disruption for all dependent operations.

Technical details

This is a denial-of-service vulnerability in the Server Infrastructure component of Siebel CRM Deployment. The vulnerability is easily exploitable and requires no authentication, with an attacker needing only network access via multiple protocols to trigger the flaw. Successful exploitation causes the Siebel CRM Deployment service to hang or crash repeatedly, resulting in complete availability loss. The vulnerability affects versions 17.0 through 26.7.

Affected products

  • Oracle Siebel CRM Deployment 17.0-26.7

Timeline

  • 2026-09-15: disclosed
  • other: CVE-2026-83222 assigned

References

Related threats