Exploitable Vulnerability in Oracle E-Business Suite Purchasing Functionality
CVE-2026-62491
8.1HIGH
What is CVE-2026-62491?
An easily exploitable vulnerability exists in the Oracle Purchasing component of Oracle E-Business Suite, affecting several versions. This allows a low privileged attacker with network access via HTTP to potentially exploit the vulnerability and gain unauthorized access to the system. Successful exploitation could enable attackers to create, delete, or modify critical data within the Oracle Purchasing platform, which poses significant risks to data integrity and confidentiality.
Affected Version(s)
Oracle Purchasing 12.2.3 <= 12.2.15