Unauthorized Access Vulnerability in Oracle HRMS by Oracle
CVE-2026-61122
8.1HIGH
What is CVE-2026-61122?
An access control vulnerability in the Oracle HRMS (UK) component of Oracle E-Business Suite enables attackers with low privileges and network access via HTTP to manipulate sensitive data. This flaw permits unauthorized creation, deletion, or modification of critical information, leading to potential exposure of all Oracle HRMS (UK) accessible data.
Affected Version(s)
Oracle HRMS (UK) 12.2.9 <= 12.2.15