What is CVE-2026-21953?
CVE-2026-21953 is a vulnerability in Oracle Retail Xstore Point of Service, specifically within the Xstore Mobile component. It affects version 21.0.3 and is easily exploitable by a low-privileged attacker with logon access to the infrastructure. Affected systems should be updated and access controls tightened.
Azərbaycanca: CVE-2026-21953 Oracle Retail Xstore Point of Service məhsulunda, Xstore Mobile komponentində aşkarlanmış zəiflikdir. 21.0.3 versiyasını təsir edir; infrastruktura giriş icazəsi olan aşağı səlahiyyətli təcavüzkar tərəfindən asanlıqla istismar edilə bilər. Təsirə məruz qalmış sistemləri yeniləmək və giriş nəzarətlərini sərtləşdirmək tövsiyə olunur.
Related CVEs
link basis: shared vendor: Oracle
FAQ2
Which component of Oracle Retail Xstore Point of Service is affected by CVE-2026-21953?
This vulnerability is discovered in the Xstore Mobile component.
What privilege level is required for an attacker to exploit CVE-2026-21953?
It can be easily exploited by a low-privileged attacker with logon access to the infrastructure.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.