THREATOPS
THREAT OPSThreat News › [NVD] CVE-2026-60684 (MEDIUM 4.6) — Vulnerability in the Oracle Applications Framework product of Oracle E-Business Suite (component: Upload Attachments). Supported versions that are affected are 12.2.8-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to comprom

[NVD] CVE-2026-60684 (MEDIUM 4.6) — Vulnerability in the Oracle Applications Framework product of Oracle E-Business Suite (component: Upload Attachments). Supported versions that are affected are 12.2.8-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to comprom

mednvdPublished 2026-07-21

CVE-2026-60684 CVSS: 4.6 MEDIUM Published: 2026-07-21T22:18:09.130

Vulnerability in the Oracle Applications Framework product of Oracle E-Business Suite (component: Upload Attachments). Supported versions that are affected are 12.2.8-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Applications Framework. Successful attac

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-60684