PT-2026-50031 · Oracle · Oracle Ireceivables

CVE-2026-46927

·

Published

2026-06-16

·

Updated

2026-06-18

CVSS v3.1

8.1

High

VectorAV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Oracle E-Business Suite Oracle Receivables versions 12.2.3 through 12.2.15
Description An issue exists in the Internal Operations component of Oracle Receivables. An unauthenticated attacker with network access via SOAP (Simple Object Access Protocol, a messaging protocol specification for exchanging structured information) can compromise the system. Successful exploitation may lead to a complete takeover of Oracle Receivables.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Access Control

Missing Authentication

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-09246
CVE-2026-46927

Affected Products

Oracle Ireceivables