Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-61749

Опубликовано: 21 окт. 2025
Источник: nvd
CVSS3: 2.7
EPSS Низкий

Описание

Vulnerability in the Unified Audit component of Oracle Database Server. Supported versions that are affected are 23.4-23.9. Easily exploitable vulnerability allows high privileged attacker having DBA privilege with network access via Oracle Net to compromise Unified Audit. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Unified Audit accessible data. CVSS 3.1 Base Score 2.7 (Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:N).

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:oracle:database_server:*:*:*:*:*:*:*:*
Версия от 23.4 (включая) до 23.9 (включая)

EPSS

Процентиль: 9%
0.00033
Низкий

2.7 Low

CVSS3

Дефекты

CWE-284

Связанные уязвимости

CVSS3: 2.7
github
4 месяца назад

Vulnerability in the Unified Audit component of Oracle Database Server. Supported versions that are affected are 23.4-23.9. Easily exploitable vulnerability allows high privileged attacker having DBA privilege with network access via Oracle Net to compromise Unified Audit. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Unified Audit accessible data. CVSS 3.1 Base Score 2.7 (Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:N).

EPSS

Процентиль: 9%
0.00033
Низкий

2.7 Low

CVSS3

Дефекты

CWE-284