Oracle General Ledger vulnerabilities
12 known vulnerabilities affecting oracle/general_ledger.
Total CVEs
12
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL1HIGH10MEDIUM1
Vulnerabilities
Page 1 of 1
CVE-2019-2638P2CRITICALCVSS 9.9v12.1.1v12.1.2+7 more2019-04-23
CVE-2019-2638 [CRITICAL] CVE-2019-2638: Vulnerability in the Oracle General Ledger component of Oracle E-Business Suite (subcomponent: Conso
Vulnerability in the Oracle General Ledger component of Oracle E-Business Suite (subcomponent: Consolidation Hierarchy Viewer). Supported versions that are affected are 12.1.1, 12.1.2, 12.1.3, 12.2.3, 12.2.4, 12.2.5, 12.2.6, 12.2.7 and 12.2.8. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle G
nvd
CVE-2026-70686P2HIGHCVSS 8.8≥ 12.2.3, ≤ 12.2.152026-08-18
CVE-2026-70686 [HIGH] CWE-284 CVE-2026-70686: Vulnerability in the Oracle General Ledger product of Oracle E-Business Suite (component: Internal O
Vulnerability in the Oracle General Ledger product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle General Ledger. Successful attacks of this vulnerability can result in
nvd
CVE-2026-60769P3HIGHCVSS 7.5≥ 12.2.3, ≤ 12.2.152026-08-18
CVE-2026-60769 [HIGH] CWE-306 CVE-2026-60769: Vulnerability in the Oracle General Ledger product of Oracle E-Business Suite (component: Internal O
Vulnerability in the Oracle General Ledger product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.3-12.2.15. Difficult to exploit vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle General Ledger. Successful attacks of this vulnerability can result
nvd
CVE-2026-70764P3HIGHCVSS 7.6≥ 12.2.3, ≤ 12.2.152026-08-18
CVE-2026-70764 [HIGH] CWE-284 CVE-2026-70764: Vulnerability in the Oracle General Ledger product of Oracle E-Business Suite (component: Internal O
Vulnerability in the Oracle General Ledger product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle General Ledger. Successful attacks of this vulnerability can result in
nvd
CVE-2021-2237P3HIGHCVSS 8.1≥ 12.1.1, ≤ 12.1.32021-04-22
CVE-2021-2237 [HIGH] CVE-2021-2237: Vulnerability in the Oracle General Ledger product of Oracle E-Business Suite (component: Account Hi
Vulnerability in the Oracle General Ledger product of Oracle E-Business Suite (component: Account Hierarchy Manager). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle General Ledger. Successful attacks of this vulnerability can result in unau
nvd
CVE-2020-2750P3HIGHCVSS 7.5≥ 12.1.1, ≤ 12.1.3≥ 12.2.3, ≤ 12.2.92020-04-15
CVE-2020-2750 [HIGH] CVE-2020-2750: Vulnerability in the Oracle General Ledger product of Oracle E-Business Suite (component: Account Hi
Vulnerability in the Oracle General Ledger product of Oracle E-Business Suite (component: Account Hierarchy Manager). Supported versions that are affected are 12.1.1-12.1.3 and 12.2.3-12.2.9. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle General Ledger. Successful attacks of this vulnerability
nvd
CVE-2026-70803P3HIGHCVSS 7.6≥ 12.2.3, ≤ 12.2.152026-08-18
CVE-2026-70803 [HIGH] CWE-284 CVE-2026-70803: Vulnerability in the Oracle General Ledger product of Oracle E-Business Suite (component: Internal O
Vulnerability in the Oracle General Ledger product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle General Ledger. Successful attacks of this vulnerability can result in
nvd
CVE-2017-10245P3HIGHCVSS 7.5v12.1.1v12.1.2+5 more2017-08-08
CVE-2017-10245 [HIGH] CVE-2017-10245: Vulnerability in the Oracle General Ledger component of Oracle E-Business Suite (subcomponent: Accou
Vulnerability in the Oracle General Ledger component of Oracle E-Business Suite (subcomponent: Account Hierarchy Manager). Supported versions that are affected are 12.1.1, 12.1.2, 12.1.3, 12.2.3, 12.2.4, 12.2.5 and 12.2.6. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle General Ledger. Success
nvd
CVE-2026-60748P3HIGHCVSS 7.6≥ 12.2.3, ≤ 12.2.152026-08-18
CVE-2026-60748 [HIGH] CWE-284 CVE-2026-60748: Vulnerability in the Oracle General Ledger product of Oracle E-Business Suite (component: Internal O
Vulnerability in the Oracle General Ledger product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows high privileged attacker with network access via HTTP to compromise Oracle General Ledger. While the vulnerability is in Oracle General Ledger,
nvd
CVE-2026-60693P3HIGHCVSS 7.1≥ 12.2.3, ≤ 12.2.152026-08-18
CVE-2026-60693 [HIGH] CWE-284 CVE-2026-60693: Vulnerability in the Oracle General Ledger product of Oracle E-Business Suite (component: Internal O
Vulnerability in the Oracle General Ledger product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.3-12.2.15. Difficult to exploit vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle General Ledger. Successful attacks of this vulnerability can result
nvd
CVE-2026-70796P3HIGHCVSS 7.2≥ 12.2.3, ≤ 12.2.152026-08-18
CVE-2026-70796 [HIGH] CWE-284 CVE-2026-70796: Vulnerability in the Oracle General Ledger product of Oracle E-Business Suite (component: Internal O
Vulnerability in the Oracle General Ledger product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.3-12.2.15. Difficult to exploit vulnerability allows high privileged attacker with logon to the infrastructure where Oracle General Ledger executes to compromise Oracle General Ledger. While the
nvd
CVE-2016-0588P4MEDIUMCVSS 4.3v11.5.10.22016-01-21
CVE-2016-0588 [MEDIUM] CVE-2016-0588: Unspecified vulnerability in the Oracle General Ledger component in Oracle E-Business Suite 11.5.10.
Unspecified vulnerability in the Oracle General Ledger component in Oracle E-Business Suite 11.5.10.2 allows remote attackers to affect integrity via unknown vectors related to Consolidation Hierarchy Viewer.
nvd