CVE-2026-61241Patch(oracle / internet_directory)

LOWCVSS 10.0 · CRITICAL

Exploit discussion active in current signal (1 latest mentions)

Immediate actions

  • Patch oracle internet_directory systems immediately
  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft

Recommended action window: High priority (within 72h)

NVD description

Vulnerability in the Oracle Internet Directory product of Oracle Fusion Middleware (component: OID LDAP Server). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.1.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via LDAP to compromise Oracle Internet Directory. While the vulnerability is in Oracle Internet Directory, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in takeover of Oracle Internet Directory. CVSS 3.1 Base Score 10.0 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H).

2.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-284

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • internet_directory

Threat summary

  • Public PoC is present in monitored signal
  • Patch or workaround signal is available
  • 7 mentions across 5 observed days
  • Momentum state: stable

What's happening

  • PoC mentioned or linked in 1 signal
  • Patch or workaround mentioned in 3 signals
  • Technical details provided in 3 signals
  • Disclosure: 2 classified signals
  • General: 1 classified signal
  • Peaked 4d ago at 2 mentions (2026-08-19); latest day: 1
  • 7 total mentions across 5 days

Affected systems

Vendors
Products
internet_directory

2 versions affected across 1 product

Deep dive

Activity timeline7 mentions / 5d
01122Mentions · 2026-08-19: 2Mentions · 2026-08-20: 2Mentions · 2026-08-21: 1Mentions · 2026-08-22: 1Mentions · 2026-08-27: 1PoC Mentioned / Linked · 2026-08-19: 1Patch / Workaround · 2026-08-20: 1Patch / Workaround · 2026-08-22: 1Patch / Workaround · 2026-08-27: 1Technical Details · 2026-08-20: 1Technical Details · 2026-08-21: 1Technical Details · 2026-08-22: 108-1908-2008-2108-2208-27
Signal classification4 categories
Patch
342.9%
Disclosure
228.6%
General
114.3%
PoC
114.3%
Referenced assets4 URLs
Classification over time
DateTotalLabels
2026-08-192
General1PoC1
2026-08-202
Disclosure1Patch1
2026-08-211
Disclosure1
2026-08-221
Patch1
2026-08-271
Patch1
Full discourse7 posts
  • ExploitGrid@exploitgrid
    Disclosure

    🛡️ #ExploitGrid Daily #Threat Digest Critical Exploits disclosed today: #CVE-2023-46604 CVE-2026-61241 CVE-2025-6934 CVE-2025-24893 CVE-2026-60137 CVE-2026-63030 ..🧵👇

    Post summary

    The tweet announces a list of several CVE identifiers that are claimed to be critical exploits disclosed on that day, but it provides no further technical or contextual information.

    1001091
    37 followersView on X
  • ExploitGrid@exploitgrid
    General

    🛡️ ExploitGrid Daily Threat Digest Top Vulnerabilities (CVEs) of the day CVE-2026-61241 CVE-2026-70880 CVE-2026-70921 CVE-2026-73343 CVE-2026-75784 ..🧵👇

    Post summary

    The post merely enumerates a list of CVE identifiers without providing any additional information such as PoC, exploit availability, active exploitation, patches, or technical details.

    1100041
    35 followersView on X
  • NCIIPC India@NCIIPC
    Patch

    #Oracle has released security update for Internet Directory which address a critical vulnerability #CVE-2026-61241. https://www.oracle.com/security-alerts/cspuaug2026.html

    Post summary

    Oracle announced a security update to address the critical CVE-2026-61241 vulnerability in Internet Directory; no PoC or exploitation details were provided.

    00010316
    8.5K followersView on X
  • SecAlerts@SecAlertsCo
    Patch

    📂 Oracle Internet Directory LDAP Server is exposed. CVE-2026-61241 scores a perfect CVSS 10 — no auth, network-accessible, full C/I/A. Versions 12.2.1.4.0 and 14.1.2.1.0 affected. Patch now. #ciso #cto #cybersecurity #vulnerabilities https://secalerts.co/vulnerability/CVE-2026-61241?utm_campaign=x https://t.co/HwjHCCVbtX

    Post summary

    The tweet announces the discovery of CVE‑2026‑61241 in Oracle Internet Directory LDAP Server, highlights its severe impact with a CVSS of 10, and confirms a patch is available.

    0001068
    878 followersView on X
  • ねこさん⚡(ΦωΦ)@catnap707
    Disclosure

    "CVE-2026-60702 carries a CVSS score of 9.9 and could allow a low-privileged attacker with existing access to further compromise WebLogic environments…CVE-2026-61241 received the maximum CVSS score of 10.0 and affects the LDAP Server component of OID" https://x.com/catnap707/status/2090617083096907855?s=20

    Post summary

    The tweet highlights two new CVEs with high CVSS scores, detailing their impact on WebLogic and OID LDAP components, but does not reference PoC, exploitation or mitigation measures.

    00010174
    3.5K followersView on X
  • CCB Alert@CCBalert
    Patch

    Warning: #Oracle fixed 100+ critical vulnerabilities in its August 2026 security update, including CVE-2026-61241 (CVSS 10.0), an unauthenticated remotely exploitable vulnerability that can lead to Oracle Internet Directory takeover. https://www.oracle.com/security-alerts/cspuaug2026.html #Patch #Patch #Patch

    Post summary

    Oracle’s August 2026 security update fixes CVE-2026-61241 and over 100 other critical vulnerabilities, including a high‑severity unauthenticated remote exploit risk.

    01000325
    7.2K followersView on X
  • ExploitGrid@exploitgrid
    PoC

    [CVE] CVE-2026-61241 [HIGH PRIORITY] 🔗 https://exploitgrid.net/cve/CVE-2026-61241

    Post summary

    The post links to an ExploitGrid page for CVE‑2026‑61241, indicating that a Proof‑of‑Concept is available online, but no further technical or patch information is provided.

    1000025
    35 followersView on X
CPE platform detail2 entries

2 of 2 entries

PartVendorProductVersionTarget SWTarget HW
Apporacleinternet_directory12.2.1.4.0--
Apporacleinternet_directory14.1.2.1.0--

Explore more