Vulnerability in Oracle HRMS (US) of Oracle E-Business Suite
CVE-2026-62524
6.3MEDIUM
What is CVE-2026-62524?
The vulnerability in Oracle HRMS (US) component of the Oracle E-Business Suite allows a low privileged attacker with network access over HTTP to compromise sensitive data. Successful exploitation can lead to unauthorized updates, inserts, and deletions of data, as well as unauthorized read access to a subset of data. This may also enable attackers to trigger a partial denial of service on the Oracle HRMS (US) application, impacting overall system availability and integrity.
Affected Version(s)
Oracle HRMS (US) 12.2.3 <= 12.2.15