CNNVD-202510-2712 Information

CNNVD ID

CNNVD-202510-2712

CVE-2025-61749

  • CNNVD Published: 2025-10-21

Description (Chinese)

Oracle Database Server是美国甲骨文(Oracle)公司的一套关系数据库管理系统。该数据库管理系统提供数据管理、分布式处理等功能。 Oracle Database Server的Unified Audit 23.4版本至23.9版本存在安全漏洞,该漏洞源于高权限攻击者可通过Oracle Net网络访问进行攻击,可能导致未经授权的数据更新、插入或删除。

Description (English)

Oracle Database Server is a relationship database management system for Oracle. The database management system provides data management, distributed processing and so on. There is a security loophole in Oracle Data Server, version 23.4 to 23.9, which stems from the fact that high-authority attackers can attack via Oracle Net, which may lead to unauthorized data updating, insertion or deletion.

Hazard Level

Critical

Vulnerability Type

其他

Affected Vendor

甲骨文

Published

2025-10-21

Last Modified

2026-02-24

References

https://www.oracle.com/security-alerts/cpuoct2025.html https://access.redhat.com/security/cve/cve-2025-61749

Patch

https://www.oracle.com/security-alerts/cpuoct2025.html

Share on: