Vulnerability in the Oracle EDI Gateway product of Oracle E-Business Suite (component: All Miscellaneous EDI Issues). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows high privileged attacker with network access via HTTP to compromise Oracle EDI Gateway. Successful attacks of this vulnerability can result in takeover of Oracle EDI Gateway. CVSS 3.1 Base Score 7.2 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H).
References
| Link | Resource |
|---|---|
| https://www.oracle.com/security-alerts/cpujul2026.html | Vendor Advisory |
Configurations
History
No history.
Information
Published : 2026-07-21 22:19
Updated : 2026-08-11 15:20
NVD link : CVE-2026-61314
Mitre link : CVE-2026-61314
CVE.ORG link : CVE-2026-61314
JSON object : View
Products Affected
oracle
- e-business_suite
CWE
CWE-284
Improper Access Control
