


Perceptive Security
SOC/SIEM Consultancy

Vulnerability in the Oracle Internet Procurement Connector product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are aff…
Published:
27 May 2026 at 22:00:00
Alert date:
28 May 2026 at 22:04:22
Source:
nvd.nist.gov
Enterprise Applications
Critical vulnerability in Oracle Internet Procurement Connector component of Oracle E-Business Suite affecting versions 12.2.3-12.2.15. Easily exploitable flaw allows unauthenticated attackers with network access via HTTP to compromise the system. Successful exploitation can result in unauthorized creation, deletion, or modification of critical data as well as unauthorized access to all accessible data. CVSS score of 9.1 indicates high impact on confidentiality and integrity.
Technical details
Mitigation steps:
Affected products:
Oracle Internet Procurement Connector
Oracle E-Business Suite
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2026-46819
https://www.oracle.com/security-alerts/cspumay2026.html
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
