{"apiVersion":"1.0","identifier":"CVE-2026-70806","description":"Vulnerability in the Oracle E-Business Tax product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle E-Business Tax executes to compromise Oracle E-Business Tax. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle E-Business Tax accessible data and unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of Oracle E-Business Tax. CVSS 3.1 Base Score 7.1 (Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H).","publishedAt":"2026-08-18T21:17:34","lastModifiedAt":"2026-08-28T14:48:35","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-70806","cvssScore":7.1,"cvssVector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H","epssProbability":0.00123,"riskScore":0.72,"affectedProduct":"Oracle E-Business Suite","affectedVersions":">=12.2.3,<12.2.16","vulnerabilityType":"Web app","operatingSystems":[],"links":{"self":"https://www.redsauce.net/api/cves/CVE-2026-70806","webPages":{"es":"https://www.redsauce.net/es/cves/CVE-2026-70806","en":"https://www.redsauce.net/en/cves/CVE-2026-70806","fr":"https://www.redsauce.net/fr/cves/CVE-2026-70806","pt":"https://www.redsauce.net/pt/cves/CVE-2026-70806","de":"https://www.redsauce.net/de/cves/CVE-2026-70806","sk":"https://www.redsauce.net/sk/cves/CVE-2026-70806","el":"https://www.redsauce.net/el/cves/CVE-2026-70806"},"source":"https://nvd.nist.gov/vuln/detail/CVE-2026-70806"}}