top of page
perceptive_background_267k.jpg

Vulnerability in the Oracle iAssets product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.3-12.2.1…

Published:

27 May 2026 at 22:00:00

Alert date:

28 May 2026 at 22:04:22

Source:

nvd.nist.gov

Click to open the original link from this advisory

Enterprise Applications

Critical vulnerability in Oracle iAssets component of Oracle E-Business Suite affecting versions 12.2.3-12.2.15. The easily exploitable flaw allows low privileged attackers with network access via HTTP to completely compromise Oracle iAssets. Successful exploitation can result in full system takeover with high impact to confidentiality, integrity, and availability. The vulnerability has scope change potential, meaning attacks may significantly impact additional products beyond Oracle iAssets. CVSS 3.1 Base Score of 9.9 indicates critical severity.

Technical details

Mitigation steps:

Affected products:

Oracle iAssets
Oracle E-Business Suite

Related links:

Related CVE's:

Related threat actors:

IOC's:

This article was created with the assistance of AI technology by Perceptive.

© 2025 by Perceptive Security. All rights reserved.

email: info@perceptivesecurity.com

Disclaimer: Deze website toont informatie afkomstig van externe bronnen. Perceptive aanvaardt geen verantwoordelijkheid voor de inhoud, juistheid of volledigheid van deze informatie.

bottom of page