Metrics
Affected Vendors & Products
No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
| Link | Providers |
|---|---|
| https://www.oracle.com/security-alerts/cpujul2026.html |
|
Tue, 04 Aug 2026 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Remote Privilege Escalation and System Takeover in Oracle Applications Framework Web Utilities |
Sun, 02 Aug 2026 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Remote Privilege Escalation and System Takeover in Oracle Applications Framework Web Utilities |
Sat, 01 Aug 2026 04:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | High-Privilege Exploit in Oracle Applications Framework Web Utilities |
Mon, 27 Jul 2026 10:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | High-Privilege Exploit in Oracle Applications Framework Web Utilities |
Wed, 22 Jul 2026 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-284 | |
| Metrics |
ssvc
|
Tue, 21 Jul 2026 22:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Vulnerability in the Oracle Applications Framework product of Oracle E-Business Suite (component: Web Utilities). Supported versions that are affected are 12.2.8-12.2.15. Easily exploitable vulnerability allows high privileged attacker with network access via HTTP to compromise Oracle Applications Framework. While the vulnerability is in Oracle Applications Framework, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in takeover of Oracle Applications Framework. CVSS 3.1 Base Score 9.1 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H). | |
| First Time appeared |
Oracle
Oracle applications Framework |
|
| CPEs | cpe:2.3:a:oracle:applications_framework:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Oracle
Oracle applications Framework |
|
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: oracle
Published:
Updated: 2026-07-22T14:01:39.868Z
Reserved: 2026-07-14T14:54:48.740Z
Link: CVE-2026-62546
Updated: 2026-07-22T14:01:36.247Z
Status : Analyzed
Published: 2026-07-21T22:19:08.213
Modified: 2026-08-06T19:37:52.920
Link: CVE-2026-62546
No data.
OpenCVE Enrichment
Updated: 2026-08-04T16:00:12Z