Vulnerability in Oracle HRMS Product of Oracle E-Business Suite
CVE-2026-62561

7.8HIGH

Key Information:

Vendor

Oracle

Vendor
CVE Published:
21 July 2026

What is CVE-2026-62561?

A vulnerability in the Oracle HRMS component of Oracle E-Business Suite exposes the system to potential compromise. This issue affects several versions, allowing a low-privileged attacker with access to the infrastructure to execute unauthorized operations, potentially leading to a complete takeover of the Oracle HRMS. Proper security measures are crucial to mitigate the risks associated with this vulnerability.

Affected Version(s)

Oracle HRMS (US) 12.2.3 <= 12.2.15

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.