Vulnerability in Oracle E-Business Suite's Quality Workbench HTML System
CVE-2026-62525

6.3MEDIUM

Key Information:

Vendor

Oracle

Vendor
CVE Published:
21 July 2026

What is CVE-2026-62525?

The Oracle E-Business Suite's Quality Workbench HTML system is susceptible to an authorization bypass that allows attackers with network access to exploit the vulnerability effectively. This issue is particularly dangerous as it enables low-privileged users to execute unauthorized actions on the application. Attackers can gain access to sensitive data, perform unauthorized updates, insertions, or deletions, and potentially disrupt service, leading to a partial denial of service. Organizations using affected versions should evaluate their security measures promptly.

Affected Version(s)

Oracle Quality 12.2.3 <= 12.2.15

References

CVSS V3.1

Score:
6.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.