Vulnerability in the Oracle Process Manufacturing Product Development product of Oracle E-Business Suite (component: Quality Management Specs). The supported version that is affected is 12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Process Manufacturing Product Development. Successful attacks of this vulnerability can result in takeover of Oracle Process Manufacturing Product Development. CVSS 3.1 Base Score 8.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H).
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://www.oracle.com/security-alerts/cpujul2026.html |
|
History
Tue, 04 Aug 2026 01:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | HTTP Access Enables Full Takeover of Oracle Process Manufacturing Product Development |
Sat, 01 Aug 2026 04:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | HTTP Access Enables Full Takeover of Oracle Process Manufacturing Product Development |
Mon, 27 Jul 2026 10:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Low‑Privilege HTTP Remote Compromise in Oracle Process Manufacturing Product Development |
Thu, 23 Jul 2026 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Low‑Privilege HTTP Remote Compromise in Oracle Process Manufacturing Product Development |
Wed, 22 Jul 2026 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-284 | |
| Metrics |
ssvc
|
Tue, 21 Jul 2026 22:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Vulnerability in the Oracle Process Manufacturing Product Development product of Oracle E-Business Suite (component: Quality Management Specs). The supported version that is affected is 12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Process Manufacturing Product Development. Successful attacks of this vulnerability can result in takeover of Oracle Process Manufacturing Product Development. CVSS 3.1 Base Score 8.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H). | |
| First Time appeared |
Oracle
Oracle process Manufacturing Product Development |
|
| CPEs | cpe:2.3:a:oracle:process_manufacturing_product_development:12.2.15:*:*:*:*:*:*:* | |
| Vendors & Products |
Oracle
Oracle process Manufacturing Product Development |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: oracle
Published: 2026-07-21T21:39:03.582Z
Updated: 2026-07-22T18:11:14.862Z
Reserved: 2026-07-08T15:52:20.745Z
Link: CVE-2026-61289
Updated: 2026-07-22T18:11:04.933Z
No data.
No data.