Vulnerability in the Oracle Outsourced Mfg for Discrete Industries product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Outsourced Mfg for Discrete Industries. Successful attacks of this vulnerability can result in takeover of Oracle Outsourced Mfg for Discrete Industries. CVSS 3.1 Base Score 8.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H).
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://www.oracle.com/security-alerts/cspujun2026.html |
|
History
Fri, 19 Jun 2026 00:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | HTTP‑Based Low‑Privilege Remote Takeover of Oracle Outsourced Mfg for Discrete Industries |
Thu, 18 Jun 2026 22:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Remote System Takeover via Low-Privilege HTTP Exploit in Oracle Outsourced Mfg for Discrete Industries | |
| Weaknesses | CWE-284 |
Thu, 18 Jun 2026 04:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Remote System Takeover via Low-Privilege HTTP Exploit in Oracle Outsourced Mfg for Discrete Industries | |
| Weaknesses | CWE-269 CWE-284 CWE-287 CWE-306 |
|
| Metrics |
ssvc
|
Tue, 16 Jun 2026 20:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Vulnerability in the Oracle Outsourced Mfg for Discrete Industries product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Outsourced Mfg for Discrete Industries. Successful attacks of this vulnerability can result in takeover of Oracle Outsourced Mfg for Discrete Industries. CVSS 3.1 Base Score 8.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H). | |
| First Time appeared |
Oracle
Oracle outsourced Mfg For Discrete Industries |
|
| CPEs | cpe:2.3:a:oracle:outsourced_mfg_for_discrete_industries:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Oracle
Oracle outsourced Mfg For Discrete Industries |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: oracle
Published: 2026-06-16T19:28:06.630Z
Updated: 2026-06-17T15:51:06.965Z
Reserved: 2026-05-18T15:55:10.314Z
Link: CVE-2026-46972
Updated: 2026-06-17T15:49:14.385Z
No data.
No data.