What is CVE-2026-46817?
CVE-2026-46817 is an improper privilege management vulnerability in Oracle E-Business Suite, affecting Oracle Payments. It allows an unauthenticated attacker with network access via HTTP to compromise the component, potentially leading to a full takeover of Oracle Payments. Applying Oracle's security patch is urgently recommended.
Azərbaycanca: CVE-2026-46817 Oracle E-Business Suite-də (xüsusilə Oracle Payments modulunda) səlahiyyət idarəetməsində zəiflikdir. Bu boşluq şəbəkə üzərindən HTTP ilə autentifikasiya olunmamış hücumçuya Oracle Payments-i tam ələ keçirməyə imkan verir. Təcili olaraq Oracle-ın təhlükəsizlik yeniləməsini tətbiq etmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-269
FAQ2
Which module of Oracle E-Business Suite does CVE-2026-46817 affect?
This vulnerability specifically affects the Oracle Payments module.
Can an attacker exploiting CVE-2026-46817 fully take over Oracle Payments?
Yes, an unauthenticated attacker with network access via HTTP can compromise Oracle Payments, potentially leading to a full takeover.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.