By using this site, you agree to the Privacy Policy and Terms of Use.
Accept
Viral Trending contentViral Trending content
  • Home
  • World News
  • Politics
  • Sports
  • Celebrity
  • Business
  • Crypto
  • Gaming News
  • Tech News
  • Travel
Reading: Oracle releases emergency patch for new E-Business Suite flaw
Notification Show More
Viral Trending contentViral Trending content
  • Home
  • Categories
    • World News
    • Politics
    • Sports
    • Celebrity
    • Business
    • Crypto
    • Tech News
    • Gaming News
    • Travel
  • Bookmarks
© 2024 All Rights reserved | Powered by Viraltrendingcontent
Viral Trending content > Blog > Tech News > Oracle releases emergency patch for new E-Business Suite flaw
Tech News

Oracle releases emergency patch for new E-Business Suite flaw

By admin 3 Min Read
Share
SHARE

Oracle has issued an emergency security update over the weekend to patch another E-Business Suite (EBS) vulnerability that can be exploited remotely by unauthenticated attackers.

Tracked as CVE-2025-61884, this information disclosure flaw in the Runtime UI component affects EBS versions 12.2.3 to 12.2.14 and could allow unauthenticated threat actors to steal sensitive data remotely following successful exploitation.

“This vulnerability is remotely exploitable without authentication, i.e., it may be exploited over a network without the need for a username and password. Oracle strongly recommends that customers apply the updates or mitigations provided by this Security Alert as soon as possible,” Oracle said.

“This vulnerability has received a CVSS Base Score of 7.5. If successfully exploited, this vulnerability may allow access to sensitive resources, added Rob Duhart, Oracle’s Chief Security Officer.

Oracle released the CVE-2025-61884 patch almost two weeks after a Clop extortion campaign targeting executives at multiple companies, which the company later linked to EBS vulnerabilities patched in July 2025 and then to another Oracle EBS vulnerability now tracked as CVE-2025-61882.

Since then, cybersecurity firm CrowdStrike said they first spotted Clop exploiting CVE-2025-61882 as a zero-day since early August in data theft attacks and warned that other threat groups may have also joined the attacks.

watchTowr Labs security researchers have also found that CVE-2025-61882 is a vulnerability chain that can allow unauthenticated attackers to gain remote code execution, as evidenced by a proof-of-concept (PoC) exploit (with a May 2025 timestamp) that was leaked online by the Scattered Lapsus$ Hunters cybercrime gang.

The Clop extortion group was behind other major data theft campaigns targeting zero-days in Accellion FTA, GoAnywhere MFT, Cleo, and MOVEit Transfer, with the latter impacting over 2,770 organizations.

Oracle has not tagged the CVE-2025-61884 vulnerability patched over the weekend as exploited in the wild, and has yet to link it to CVE-2025-61882 attacks.

However, seeing that internet-facing Oracle EBS instances are actively targeted, defenders are strongly advised to apply the out-of-band CVE-2025-61884 patch as soon as possible.

Picus BAS Summit

Join the Breach and Attack Simulation Summit and experience the future of security validation. Hear from top experts and see how AI-powered BAS is transforming breach and attack simulation.

Don’t miss the event that will shape the future of your security strategy

You Might Also Like

Can EU AI Act actually regulate models like Mythos?

Take Control of Your Debt With These Free Tools

Alphabet’s Isomorphic Labs raises $2.1bn in Series B funding

ChatGPT 5.5 Instant Review: The Good, The Bad, and The Insane

New critical Exim mailer flaw allows remote code execution

TAGGED: Emergency Update, Oracle, Oracle E-Business Suite, Out-of-Band, Patch, Vulnerability
Share This Article
Facebook Twitter Copy Link
Previous Article Bitcoin Derivatives Market Hit Hard With Massive Sweep In Open Interest – Here’s What To Know
Next Article Jake Paul vs Gervonta Davis fight sees rules changed just weeks before first bell
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

- Advertisement -
Ad image

Latest News

Death toll from large-scale Russian attack that slammed Ukraine rises to 24
World News
Bitcoin MVRV Pattern Predicts Major Downswing Ahead – Details
Crypto
Sony Allegedly “Exploring” the Revival of “Older, Unused IPs”, Says Insider
Gaming News
Bomberman 64 Is Still A Masterpiece Of 3D Platformers Without A Playbook
Gaming News
Greece unveils framework to curb overtourism, increase investment and protect special areas
Travel
Can EU AI Act actually regulate models like Mythos?
Tech News
Pharma seen as safe bet amid currency volatility, says Ambareesh Baliga
Business

About Us

Welcome to Viraltrendingcontent, your go-to source for the latest updates on world news, politics, sports, celebrity, tech, travel, gaming, crypto news, and business news. We are dedicated to providing you with accurate, timely, and engaging content from around the globe.

Quick Links

  • Home
  • World News
  • Politics
  • Celebrity
  • Business
  • Home
  • World News
  • Politics
  • Sports
  • Celebrity
  • Business
  • Crypto
  • Gaming News
  • Tech News
  • Travel
  • Sports
  • Crypto
  • Tech News
  • Gaming News
  • Travel

Trending News

cageside seats

Unlocking the Ultimate WWE Experience: Cageside Seats News 2024

Death toll from large-scale Russian attack that slammed Ukraine rises to 24

Investing £5 a day could help me build a second income of £329 a month!

cageside seats
Unlocking the Ultimate WWE Experience: Cageside Seats News 2024
May 22, 2024
Death toll from large-scale Russian attack that slammed Ukraine rises to 24
May 18, 2026
Investing £5 a day could help me build a second income of £329 a month!
March 27, 2024
Brussels unveils plans for a European Degree but struggles to explain why
March 27, 2024
© 2024 All Rights reserved | Powered by Vraltrendingcontent
  • About Us
  • Contact US
  • Disclaimer
  • Privacy Policy
  • Terms of Service
Welcome Back!

Sign in to your account

Lost your password?