Oracle E-Business Suite ADPatch Component Oracle Applications DBA Privilege Escalation Vulnerability

Vulnerability

A vulnerability has been identified in the Oracle Applications DBA product of Oracle E-Business Suite, specifically within the ADPatch component. This vulnerability affects supported versions 12.2.3 through 12.2.15. It is a difficult-to-exploit vulnerability that allows a high-privileged attacker with network access via HTTP to compromise Oracle Applications DBA. Successful exploitation requires human interaction from a person other than the attacker. While the vulnerability resides in Oracle Applications DBA, successful attacks may significantly impact additional products, leading to a scope change. Exploitation of this vulnerability can result in the takeover of Oracle Applications DBA.

Impact

Exploitation of this vulnerability can lead to the takeover of Oracle Applications DBA, with potential significant impacts on additional products.

Added: Apr 21, 2026, 11:29 PM
Updated: Apr 21, 2026, 11:29 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
7.5
exploitability
4.3
remediation
0.0
relevance
6.4
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.