Exploitable Vulnerability in Oracle E-Business Suite's Project Portfolio Analysis
CVE-2026-46961
8.8HIGH
Key Information:
- Vendor
Oracle
- Vendor
- CVE Published:
- 16 June 2026
What is CVE-2026-46961?
The vulnerability in Oracle E-Business Suite's Project Portfolio Analysis component allows an attacker with low privileges to exploit the system via HTTP. This easily exploitable flaw could lead to a complete takeover of the application, affecting confidentiality, integrity, and availability. Users running supported versions from 12.2.3 to 12.2.15 should take immediate action to mitigate potential risks and safeguard their systems.
Affected Version(s)
Oracle Project Portfolio Analysis 12.2.3 <= 12.2.15