Skip to main content
Press slash or control plus K to focus the search. Use the arrow keys to navigate results and press enter to open a threat.

Threats Tagged 'cve-2026-61125'

View all threats tagged with 'cve-2026-61125'. Filter and sort to focus on specific types of threats.

Pro Console Lifetime

Stop chasing alerts. Route them.

Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.

Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)

View Plans & Pricing

API access activates after upgrading in Console -> Billing.

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now

Filter Threats

Narrow down the results by type, severity, or affected countries

Search threats by title, CVE ID, or description. Maximum 100 characters.
Active filters (1):Tag: cve-2026-61125

Threats Tagged 'cve-2026-61125'

Click on any threat for detailed analysis and mitigation recommendations

CVE-2026-61125: Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Configure to Order. While the vulnerability is in Oracle Configure to Order, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Configure to Order accessible data. in Oracle Corporation Oracle Configure to OrderCVE-2026-61125
0

CVE-2026-61125 is a high-severity vulnerability in Oracle Configure to Order, part of Oracle E-Business Suite's Supply to Order Workbench. It allows a low privileged attacker with network access via HTTP to compromise the product, potentially leading to unauthorized access to critical or all accessible data. The vulnerability affects versions 12.2.3 through 12.2.15. The vulnerability has a CVSS 3.1 base score of 7.7, indicating significant confidentiality impact without integrity or availability loss. Oracle has published a Critical Patch Update advisory in July 2026 addressing this and many other vulnerabilities. No explicit patch or remediation level is stated for this specific vulnerability in the advisory, so users should consult the vendor advisory for patch availability and apply updates promptly.

Join the discussion

Showing 1 to 1 of 1 result

Filters:Tag: cve-2026-61125
Page 1 of 1
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses