Technology · Oracle
Oracle Enterprise Manager Base Platform vulnerabilities
Updated . Rebuilt every hour.
Junglewise Threat Intelligence has tracked 38 vulnerabilities in Oracle Enterprise Manager Base Platform: 0 in the last 7 days and 24 in the last 90 days, 11 of them critical and 0 exploited in the wild. The most recent, CVE-2026-62597, was published on 15 September 2026.
- Last 7 days
- 0
- Last 90 days
- 24
- Critical, all time
- 11
- Exploited in the wild
- 0
About Oracle Enterprise Manager Base Platform
A management platform for monitoring and administering Oracle software and hardware environments.
Latest Oracle Enterprise Manager Base Platform vulnerabilities
- CVE-2026-62597: Oracle Enterprise Manager Base Platform integrity violation in Event ManagementmediumCVSS 6.5EPSS 0.3%
- CVE-2026-47006: Oracle Enterprise Manager takeover in Self Update FrameworkhighCVSS 7.2
- CVE-2026-47005: Oracle Enterprise Manager Base Platform takeover in Self Update FrameworkhighCVSS 7.2
- CVE-2026-47004: Oracle Enterprise Manager Base Platform takeover in Self Update FrameworkhighCVSS 8.8
- CVE-2026-47003: Oracle Enterprise Manager Base Platform confidentiality breach in UI FrameworkmediumCVSS 5.9
- CVE-2026-47002: Oracle Enterprise Manager Base Platform UI Framework vulnerabilitymediumCVSS 6.1
- CVE-2026-47001: Oracle Enterprise Manager Base Platform data manipulation in Web Services FrameworkmediumCVSS 5.4
- CVE-2026-47000: Oracle Enterprise Manager Base Platform integrity vulnerability in Security FrameworklowCVSS 3.5
- CVE-2026-46999: Oracle Enterprise Manager Base Platform compromise in Discovery FrameworkhighCVSS 7
- CVE-2026-46998: Oracle Enterprise Manager Base Platform takeover in Metadata PluginhighCVSS 8.8
- CVE-2026-46997: Oracle Enterprise Manager integrity vulnerability in Metadata PluginmediumCVSS 6.5
- CVE-2026-46996: Oracle Enterprise Manager data manipulation in Metadata PluginhighCVSS 7.1
- CVE-2026-46995: Oracle Enterprise Manager Base Platform takeover in Metadata PluginhighCVSS 8.8
- CVE-2026-46994: Oracle Enterprise Manager Base Platform takeover in Agent Next GencriticalCVSS 9.8
- CVE-2026-46993: Oracle Enterprise Manager Base Platform data compromise in Agent Next GenhighCVSS 8.2
- CVE-2026-46992: Oracle Enterprise Manager Base Platform takeover in Enterprise Config ManagementhighCVSS 8.8
- CVE-2026-46991: Oracle Enterprise Manager Base Platform data manipulation in Enterprise Config ManagementmediumCVSS 4.4
- CVE-2026-46990: Oracle Enterprise Manager Base Platform vulnerability in Enterprise Config ManagementhighCVSS 7.3
- CVE-2026-46989: Oracle Enterprise Manager Base Platform vulnerability in UI FrameworkcriticalCVSS 9.1
- CVE-2026-46988: Oracle Enterprise Manager compromise in Connector FrameworkhighCVSS 7.2
- CVE-2026-46987: Oracle Enterprise Manager Base Platform data exposure in Application Service Level MgmthighCVSS 7.7
- CVE-2026-46986: Oracle Enterprise Manager information disclosure in Agent Next GenmediumCVSS 5.3
- CVE-2026-46985: Oracle Enterprise Manager Base Platform information disclosure in Agent Next GenmediumCVSS 5.3
- CVE-2026-46984: Oracle Enterprise Manager Base Platform information disclosure in Agent Next GenmediumCVSS 5.3
- CVE-2026-46875: Oracle Enterprise Manager Base Platform takeover in Deployment LibrarycriticalCVSS 9.1EPSS 0.5%
Most severe Oracle Enterprise Manager Base Platform vulnerabilities
Exploited in the wild first, then by severity and CVSS score.
- CVE-2026-46855: Oracle Enterprise Manager Base Platform improper access control in Metadata PlugincriticalCVSS 9.9EPSS 0.5%
- CVE-2026-46852: Oracle Enterprise Manager privilege escalation in Metadata PlugincriticalCVSS 9.9EPSS 0.5%
- CVE-2026-46854: Oracle Enterprise Manager Base Platform access control bypass in Target ManagementcriticalCVSS 9.9EPSS 0.4%
- CVE-2026-46832: Oracle Enterprise Manager Base Platform compromise in Discovery FrameworkcriticalCVSS 9.9EPSS 0.4%
- CVE-2026-46857: Oracle Enterprise Manager Base Platform improper access control in OMScriticalCVSS 9.8EPSS 0.5%
- CVE-2026-46994: Oracle Enterprise Manager Base Platform takeover in Agent Next GencriticalCVSS 9.8
- CVE-2026-46856: Oracle Enterprise Manager Base Platform vulnerability in Metadata PlugincriticalCVSS 9.6EPSS 0.4%
- CVE-2026-46853: Oracle Enterprise Manager Base Platform XSS in Metadata PlugincriticalCVSS 9.6EPSS 0.4%
- CVE-2026-46875: Oracle Enterprise Manager Base Platform takeover in Deployment LibrarycriticalCVSS 9.1EPSS 0.5%
- CVE-2026-46989: Oracle Enterprise Manager Base Platform vulnerability in UI FrameworkcriticalCVSS 9.1
Vulnerabilities per week
The last 13 weeks, by the week each vulnerability was published.
| Week of | Bar | Vulns | Critical |
|---|---|---|---|
| 29 Jun 2026 | 0 | 0 | |
| 6 Jul 2026 | 0 | 0 | |
| 13 Jul 2026 | 0 | 0 | |
| 20 Jul 2026 | 23 | 2 | |
| 27 Jul 2026 | 0 | 0 | |
| 3 Aug 2026 | 0 | 0 | |
| 10 Aug 2026 | 0 | 0 | |
| 17 Aug 2026 | 0 | 0 | |
| 24 Aug 2026 | 0 | 0 | |
| 31 Aug 2026 | 0 | 0 | |
| 7 Sep 2026 | 0 | 0 | |
| 14 Sep 2026 | 1 | 0 | |
| 21 Sep 2026 | 0 | 0 |
How this is built
Junglewise Threat Intelligence collects vulnerabilities from NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories, and matches each one to the technologies and vendors it affects. Dates are the date a vulnerability was published, in UTC.
The pages are rebuilt from the database every hour. Frozen weekly and monthly reports never change once published, so they can be cited.
Use this data
The same data is at https://junglewise.ai/threats/technologies/enterprise-manager-base-platform.json, for scripts and language models. It is free to reuse under CC BY 4.0 with a link back to this page.
Cite as: Junglewise Threat Intelligence, "Oracle Enterprise Manager Base Platform vulnerabilities", https://junglewise.ai/threats/technologies/enterprise-manager-base-platform, 26 September 2026.