CNNVD-202510-2682 Information

CNNVD ID

CNNVD-202510-2682

CVE-2025-62288

  • CNNVD Published: 2025-10-21

Description (Chinese)

Oracle Health Sciences Applications是美国甲骨文(Oracle)公司的一套用于医疗保健行业的临床研发解决方案。 Oracle Health Sciences Applications的Oracle Health Sciences Data Management Workbench 3.4.0.1.3版本和3.4.1.0.10版本存在安全漏洞,该漏洞源于高权限攻击者可通过HTTP网络访问进行攻击,可能导致关键数据未授权访问或完全访问所有数据。

Description (English)

Oracle Health Science Applications is a set of clinical research and development solutions for the health-care industry by Oracle. There is a security loophole in Oracle Health Science Data Management Works version 3.4.0.1.3 and version 3.4.1.0.10 of Oracle Health Science Applications, which stems from the fact that high-authorized attackers can attack through the HTTP network, which may lead to unauthorized or complete access to all data by key data.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

甲骨文

Published

2025-10-21

Last Modified

2026-02-24

References

https://access.redhat.com/security/cve/cve-2025-62288 https://www.oracle.com/security-alerts/cpuoct2025.html

Patch

https://www.oracle.com/security-alerts/cpuoct2025.html

Share on: