HIGHVulnerability
CVE-2026-62493
Vulnerability in the Oracle Purchasing product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.11-12.2.15. Difficult to exploit vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Purchasing. Successful attacks of this vulnerability can result in takeover of Oracle Purchasing. CVSS 3.1 Base Score 7.5 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H).
Properties
- severity
- HIGH
- score
- 7.5
- cve_id
- CVE-2026-62493
- vector
- CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
- published_at
- 2026-07-21T22:19:05.270
- last_modified
- 2026-08-07T10:53:47.407
Related Entities (6)
DESCRIBED_BY (1)
→[Source]NVD
AFFECTS_PRODUCT (1)
→[Product]
HAS_WEAKNESS (4)
→[Weakness]Missing Authentication for Critical Function
→[Weakness]Improper Privilege Management
→[Weakness]Improper Authentication
→[Weakness]Improper Access Control
Explore deeper with Ninja Signal's threat intelligence graph