A vulnerability described as problematic has been identified in Oracle Sales Offline up to 12.2.15. Affected by this vulnerability is an unknown functionality of the component Internal Operations. Such manipulation leads to privilege escalation.

This vulnerability is uniquely identified as CVE-2026-60790. The attack can be launched remotely. No exploit exists.