Vulnerability in Oracle Production Scheduling of Oracle E-Business Suite
CVE-2026-61043

6.7MEDIUM

Key Information:

Vendor

Oracle

Vendor
CVE Published:
21 July 2026

What is CVE-2026-61043?

This vulnerability affects the Oracle Production Scheduling component within Oracle E-Business Suite, allowing attackers with low privileges access to exploit the system. When successfully attacked, this vulnerability can lead to unauthorized creation, deletion, or modification of critical data and unauthorized reading of sensitive information accessible within the Oracle Production Scheduling environment. External human interaction is required in exploitation, and attacks may have broader implications, impacting additional products beyond the initial scope.

Affected Version(s)

Oracle Production Scheduling 12.2.3 <= 12.2.15

References

CVSS V3.1

Score:
6.7
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
High
Availability:
Low
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.