Published on: 08 October 2025
Oracle has released a security update to address a vulnerability in Oracle E-Business Suite. The list of patches and details can be found at:
https://www.oracle.com/security-alerts/alert-cve-2025-61882.html
Reports indicated that the vulnerability (CVE-2025-61882) in Oracle E-Business Suite is being actively exploited in the wild. This vulnerability is remotely exploitable without authentication. It may be exploited over a network without the need for a username and password. If successfully exploited, this vulnerability may result in remote code execution. System administrators and users are advised to take immediate action to patch your affected systems to mitigate the elevated risk of cyber attacks.
Successful exploitation of the vulnerabilities could lead to remote code execution on an affected system.
Software updates for affected systems are now available. System administrators of affected systems should follow the recommendations provided by the product vendor and take immediate actions to mitigate the risk. For detailed information of the available patches, please refer to the section "Fixed Software" of corresponding security advisory at vendor's website.
System administrators should contact their product support vendors for the fixes and assistance.