A critical remote code execution vulnerability has been identified in JD Edwards EnterpriseOne General Ledger (CVE-2026-46893). This vulnerability affects version 9.2 of the software and allows a low-privileged attacker with network access via SMB to compromise the system. The vulnerability is easily exploitable and could lead to full system takeover. While the vulnerability is specific to the General Ledger component, attacks may impact additional products due to scope changes. The CVSS 3.1 base score is 9.9, indicating a high severity level. Organizations using the affected version should prioritize patching to mitigate the risk. This vulnerability poses a significant threat to systems running JD Edwards EnterpriseOne General Ledger, as exploitation could result in unauthorized access and potential data breaches. It is recommended that affected users apply the latest security patches from Oracle immediately. Security teams should monitor for any signs of exploitation and ensure network access controls are properly configured to prevent unauthorized access.