Junglewise Threat Intelligence

CVE-2026-83188: Oracle E-Business Suite Depot Repair privilege escalation

CVE-2026-83188 · Severity: high · CVSS 7.2 · Published 2026-09-15

Technologies: Oracle E-Business Suite. Vendors: Oracle.

Executive brief

Oracle Depot Repair is a maintenance and service management component of Oracle E-Business Suite used by enterprises to manage equipment repairs and operations. A privilege escalation vulnerability allows authenticated high-privileged users to gain complete control over the Depot Repair system via network access, potentially compromising sensitive maintenance records, operational data, and system availability across the entire affected instance.

Technical details

This is a privilege escalation vulnerability in Oracle E-Business Suite's Depot Repair component (Internal Operations). The vulnerability is easily exploitable and requires high-privileged network access via HTTP; no additional user interaction is needed. A successful exploit allows an attacker with high privileges to achieve complete system compromise, including read, write, and delete access to all Depot Repair data and functions. The vulnerability affects versions 12.2.3 through 12.2.15. Patches are expected to be available through Oracle's standard security update process.

Affected products

  • Oracle E-Business Suite 12.2.3 to 12.2.15

Timeline

  • 2026-09-15: disclosed

References

Related threats