vulns.co
/
GKData.io MCP

Back to CVEs

CVE-2025-61882 - Oracle E-Business Suite Concurrent Processing takeover

An unauthenticated network attacker can compromise Oracle Concurrent Processing over HTTP in affected Oracle E-Business Suite releases.

Tags: unauthenticated, takeover, oracle-ebs, exploited

Product
Oracle E-Business Suite Concurrent Processing and BI Publisher Integration 12.2.3 through 12.2.14
Severity
critical (CVSS 9.8)
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Published / added
2025-10-05
Signals
CISA KEV

References and evidence