Network Vulnerability in Oracle E-Business Suite Affecting Manufacturing Components
CVE-2026-46973

8.8HIGH

What is CVE-2026-46973?

A vulnerability exists in the Oracle Outsourced Manufacturing for Discrete Industries component of the Oracle E-Business Suite. A low privileged attacker with network access via HTTP can exploit this weakness, potentially leading to a successful takeover of affected systems. This vulnerability impacts the confidentiality, integrity, and availability of the component, affecting various versions between 12.2.3 and 12.2.15. Organizations using these versions should prioritize remediation actions to safeguard their operations.

Affected Version(s)

Oracle Outsourced Mfg for Discrete Industries 12.2.3 <= 12.2.15

References

CVSS V3.1

Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.