Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
| Link | Providers |
|---|---|
| https://www.oracle.com/security-alerts/cspusep2026.html |
|
Sun, 20 Sep 2026 09:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Insecure Access Control in Oracle Common Applications Calendar Enables Low-Privilege Data Manipulation |
Fri, 18 Sep 2026 21:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Low-Privilege Data Modification in Oracle Common Applications Calendar | |
| Weaknesses | CWE-285 |
Thu, 17 Sep 2026 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 16 Sep 2026 22:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Low-Privilege Data Modification in Oracle Common Applications Calendar | |
| Weaknesses | CWE-284 CWE-285 |
Tue, 15 Sep 2026 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Vulnerability in the Oracle Common Applications Calendar product of Oracle E-Business Suite (component: Applications Calendar). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Common Applications Calendar. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle Common Applications Calendar accessible data as well as unauthorized read access to a subset of Oracle Common Applications Calendar accessible data. CVSS 3.1 Base Score 7.1 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:N). | |
| First Time appeared |
Oracle
Oracle common Applications Calendar |
|
| CPEs | cpe:2.3:a:oracle:common_applications_calendar:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Oracle
Oracle common Applications Calendar |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: oracle
Published:
Updated: 2026-09-17T15:15:11.050Z
Reserved: 2026-08-31T15:40:57.345Z
Link: CVE-2026-83187
Updated: 2026-09-17T14:22:42.543Z
Status : Deferred
Published: 2026-09-15T20:18:29.937
Modified: 2026-09-17T16:18:08.440
Link: CVE-2026-83187
No data.
OpenCVE Enrichment
Updated: 2026-09-20T09:15:17Z