


Perceptive Security
SOC/SIEM Consultancy

Vulnerability in the Oracle Universal Work Queue product of Oracle E-Business Suite (component: Work Provider Site Level Administration). Supported versions th…
Published:
27 May 2026 at 22:00:00
Alert date:
28 May 2026 at 22:04:22
Source:
nvd.nist.gov
Enterprise Applications
Critical vulnerability CVE-2026-46824 in Oracle Universal Work Queue component of Oracle E-Business Suite affects versions 12.2.3-12.2.15. The easily exploitable vulnerability allows low privileged attackers with network access via HTTP to completely compromise Oracle Universal Work Queue. Successful exploitation can result in complete system takeover with high impact on confidentiality, integrity and availability. The vulnerability has a CVSS 3.1 base score of 9.9, indicating critical severity. Attacks may also significantly impact additional products beyond the primary target due to scope change.
Technical details
Mitigation steps:
Affected products:
Oracle Universal Work Queue
Oracle E-Business Suite
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2026-46824
https://www.oracle.com/security-alerts/cspumay2026.html
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
