A vulnerability, which was classified as
critical, has been found in
Oracle Primavera P6 Enterprise Project Portfolio Management up to 20.12.21.5/21.12.20.0/22.12.16.0/23.12.10.0. Affected by this issue is some unknown functionality of the component
Web Access. The manipulation leads to improper authorization.
This vulnerability is handled as
CVE-2025-21526. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.