Vulnerability in Oracle E-Business Suite's Outsourced Manufacturing Component
CVE-2026-46972

8.8HIGH

What is CVE-2026-46972?

A vulnerability exists in the Oracle Outsourced Manufacturing for Discrete Industries component of Oracle E-Business Suite. This flaw allows low-privileged attackers with network access via HTTP to compromise the system. Successful exploitation could enable unauthorized access and control over the affected manufacturing operations, leading to significant security risks related to confidentiality, integrity, and availability of the system's data and functionalities.

Affected Version(s)

Oracle Outsourced Mfg for Discrete Industries 12.2.3 <= 12.2.15

References

CVSS V3.1

Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.