Junglewise Threat Intelligence

CVE-2026-83453: Oracle Document Management and Collaboration privilege escalation in E-Business Suite

CVE-2026-83453 · Severity: high · CVSS 7.2 · Published 2026-09-15

Technologies: Oracle E-Business Suite Document Management and Collaboration. Vendors: Oracle.

Executive brief

Oracle Document Management and Collaboration is a content and document management system used within Oracle E-Business Suite to store, organize, and share business documents. A privilege escalation vulnerability allows authenticated high-privilege users to take complete control of the system, potentially exposing or modifying sensitive business documents and disrupting document workflows across the organization.

Technical details

This is a privilege escalation vulnerability in the Document Management and Collaboration component (Internal Operations) of Oracle E-Business Suite, affecting versions 12.2.3 through 12.2.15. The vulnerability is easily exploitable and requires network access via HTTP and high-privilege authentication credentials. An attacker with administrative or high-privileged user access can exploit this flaw to achieve complete system takeover, leading to compromise of confidentiality, integrity, and availability of the affected component. Oracle has issued patches as part of their September 2026 Critical Patch Update.

Affected products

  • Oracle E-Business Suite Document Management and Collaboration 12.2.3-12.2.15

Timeline

  • 2026-09-15: disclosed

References

Related threats