Vulnerability in Oracle E-Business Suite’s Enterprise Asset Management Component
CVE-2026-60695

5.9MEDIUM

Key Information:

Vendor

Oracle

Vendor
CVE Published:
21 July 2026

What is CVE-2026-60695?

A vulnerability in Oracle's Enterprise Asset Management component within the E-Business Suite allows high-privileged attackers with network access through HTTP to compromise the system. Successful exploitation can lead to unauthorized creation, deletion, or modification of critical data, as well as complete access to all Oracle Enterprise Asset Management accessible data. This situation poses a serious risk to the confidentiality and integrity of sensitive information.

Affected Version(s)

Oracle Enterprise Asset Management 12.2.3 <= 12.2.15

References

CVSS V3.1

Score:
5.9
Severity:
MEDIUM
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.