Vulnerability in Oracle E-Business Suite Integrated SOA Gateway
CVE-2026-60572
6.3MEDIUM
Key Information:
- Vendor
Oracle
- Vendor
- CVE Published:
- 21 July 2026
What is CVE-2026-60572?
A security flaw in Oracle E-Business Suite Integrated SOA Gateway enables low-privileged attackers with network access via HTTP to exploit the vulnerability. This exploitation can lead to unauthorized actions including updates, inserts, or deletions of accessible data. Moreover, attackers might achieve unauthorized read access to a subset of data and potentially trigger partial denial-of-service, thereby affecting the service reliability of Oracle E-Business Suite Integrated SOA Gateway.
Affected Version(s)
Oracle E-Business Suite Integrated SOA Gateway 12.2.3 <= 12.2.15