logo

A Vulnerability in Oracle E-Business Suite Could Allow for Remote Code Execution

ID: 87111cbd-7be3-594a-a725-e62301c3a935

STIX ID: report--87111cbd-7be3-594a-a725-e62301c3a935

Feed Name: CISecurity.org Advisories

Threat Score
75/100

Date Published: 2025-10-16

Date Updated: 2026-04-27

...
...

A remote code execution vulnerability (CVE-2025-61882) in Oracle E-Business Suite's Oracle Concurrent Processing allows unauthenticated attackers with HTTP access to execute code, install programs, view/change/delete data, and create accounts, potentially resulting in full takeover of the affected component. The issue is mapped to MITRE ATT&CK Initial Access (TA0001) and Exploit Public-Facing Application (T1190).

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.