No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
| Link | Providers |
|---|---|
| https://www.oracle.com/security-alerts/cspujun2026.html |
|
Thu, 18 Jun 2026 23:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Local Compromise Vulnerability in JD Edwards EnterpriseOne Tools with Scope Change |
Thu, 18 Jun 2026 22:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Local Compromise of JD Edwards EnterpriseOne Tools via Installation Security Vulnerability | |
| Weaknesses | CWE-287 |
Thu, 18 Jun 2026 04:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Local Compromise of JD Edwards EnterpriseOne Tools via Installation Security Vulnerability | |
| Weaknesses | CWE-284 CWE-287 |
|
| Metrics |
ssvc
|
Tue, 16 Jun 2026 20:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Vulnerability in the JD Edwards EnterpriseOne Tools product of Oracle JD Edwards (component: Installation Security). Supported versions that are affected are 9.2.0.0-9.2.26.2. Easily exploitable vulnerability allows unauthenticated attacker with logon to the infrastructure where JD Edwards EnterpriseOne Tools executes to compromise JD Edwards EnterpriseOne Tools. While the vulnerability is in JD Edwards EnterpriseOne Tools, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in takeover of JD Edwards EnterpriseOne Tools. CVSS 3.1 Base Score 9.3 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H). | |
| First Time appeared |
Oracle
Oracle jd Edwards Enterpriseone Tools |
|
| CPEs | cpe:2.3:a:oracle:jd_edwards_enterpriseone_tools:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Oracle
Oracle jd Edwards Enterpriseone Tools |
|
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: oracle
Published:
Updated: 2026-06-18T03:57:42.077Z
Reserved: 2026-05-18T15:55:10.311Z
Link: CVE-2026-46913
Updated: 2026-06-17T13:51:36.563Z
No data.
No data.
OpenCVE Enrichment
Updated: 2026-06-18T23:30:16Z