CVE-2025-21526 | Oracle Primavera P6 Enterprise Project Portfolio Management Web Access improper authorization (Nessus ID 214528)
A vulnerability, which was classified as critical, has been found in Oracle Primavera P6 Enterprise Project Portfolio Management up to 20.12.21.5/21.12.20.0/22.12.16.0/23.12.10.0. Affected by this issue is some unknown functionality of the component Web Access. The manipulation leads to improper authorization.
This vulnerability is handled as CVE-2025-21526. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.