Exploitable Vulnerability in Oracle Advanced Benefits of Oracle E-Business Suite
CVE-2026-61282
6.3MEDIUM
What is CVE-2026-61282?
The Oracle Advanced Benefits component of the Oracle E-Business Suite is susceptible to exploitation through an access control vulnerability. This flaw permits a low-privileged attacker with network access via HTTP to compromise sensitive functionalities within the application. Successful exploitation can lead to unauthorized modifications, deletions, and readings of the accessible data within Oracle Advanced Benefits. Additionally, it may allow an attacker to inflict a partial denial of service, affecting the availability of the system. The vulnerability primarily targets versions 12.2.4 through 12.2.15 of the product.
Affected Version(s)
Oracle Advanced Benefits 12.2.4 <= 12.2.15