Close Menu
TechurzTechurz
    What's Hot

    Founders Fund’s outlier bet on humanely killed fish

    June 20, 2026

    He made your free video player run smoothly. Now he’s doing that for robots.

    June 20, 2026

    The US banned Anthropic’s Fable 5 release, but the numbers don’t seem to care

    June 19, 2026
    X (Twitter) Pinterest YouTube LinkedIn WhatsApp
    Tech Pulse
    • Founders Fund’s outlier bet on humanely killed fish
    • He made your free video player run smoothly. Now he’s doing that for robots.
    • The US banned Anthropic’s Fable 5 release, but the numbers don’t seem to care
    • Source: Elastic agrees to buy CRV-backed DeductiveAI for up to $85M
    • AI inference startup Baseten reportedly raising $1.5B months after its last mega round
    X (Twitter) Pinterest YouTube LinkedIn WhatsApp
    TechurzTechurz
    • Home
    • Tech Pulse
    • Future Tech
    • AI Systems
    • Cyber Reality
    • Disruption Lab
    • Signals
    TechurzTechurz
    Home - Cyber Reality - New Oracle E-Business Suite Bug Could Let Hackers Access Data Without Login
    Cyber Reality

    New Oracle E-Business Suite Bug Could Let Hackers Access Data Without Login

    TechurzBy TechurzOctober 12, 2025Updated:May 10, 2026No Comments2 Mins Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
    New Oracle E-Business Suite Bug Could Let Hackers Access Data Without Login
    Share
    Facebook Twitter LinkedIn Pinterest Email


    Oct 12, 2025Ravie LakshmananVulnerability / Threat Intelligence

    Oracle on Saturday issued a security alert warning of a fresh security flaw impacting its E-Business Suite that it said could allow unauthorized access to sensitive data.

    The vulnerability, tracked as CVE-2025-61884, carries a CVSS score of 7.5, indicating high severity. It affects versions from 12.2.3 through 12.2.14.

    “Easily exploitable vulnerability allows an unauthenticated attacker with network access via HTTP to compromise Oracle Configurator,” according to a description of the flaw in the NIST’s National Vulnerability Database (NVD). “Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Configurator accessible data.”

    In a standalone alert, Oracle said the flaw is remotely exploitable without requiring any authentication, making it crucial that users apply the update as soon as possible. The company, however, makes no mention of it being exploited in the wild.

    Oracle’s Chief Security Officer, Rob Duhart, pointed out that the vulnerability affects “some deployments” of E-Business Suite and that it could be weaponized to allow access to sensitive resources.

    The development comes shortly after Google Threat Intelligence Group (GTIG) and Mandiant disclosed that dozens of organizations may have been impacted following the zero-day exploitation of CVE-2025-61882 in Oracle’s E-Business Suite (EBS) software.

    The attacks have been found to leverage the vulnerability to trigger two different payload chains, dropping malware families like GOLDVEIN.JAVA, SAGEGIFT, SAGELEAF, and SAGEWAVE.

    While the tech giant did not specifically attribute the activity to a specific named threat actor or group, it’s believed that the attackers are orchestrated by a hacking group with ties to the Cl0p ransomware group.

    Access bug data EBusiness Hackers login Oracle Suite
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous ArticleThese Bose headphones took my favorite AirPods Max battery feature – and did it even better
    Next Article Feeling lonely at work? You’re not alone – 5 ways to boost your team’s morale
    Techurz
    • Website

    Related Posts

    Opinion

    Collecting robot training data is dirty, unglamorous work. Some AI labs are already paying XDOF to do it.

    June 17, 2026
    Opinion

    Anthropic’s latest feud with the Trump admin may actually help it, sales data suggests

    June 16, 2026
    Opinion

    As Anthropic suspends access to new models, India debates its AI future

    June 14, 2026
    Add A Comment
    Latest Tech Pulse

    College social app Fizz expands into grocery delivery

    September 3, 20252,289

    SolarSquare in talks to raise up to $60M as India’s rooftop solar market draws major VC interest

    May 23, 202622

    Future of Digital Privacy and Security: 7 Truths Nobody Tells You

    May 25, 202619
    Stay In Touch
    • YouTube
    • WhatsApp
    • Twitter
    • Pinterest
    • LinkedIn

    Techurz helps readers stay ahead of digital change with clear, practical, future focused technology intelligence written today,searched tomorrow.

    X (Twitter) Pinterest YouTube LinkedIn WhatsApp
    Company
    • About Us
    • Contact Us
    • Our Authors / Editorial Team
    • Write For Us
    • Advertise
    Policy
    • Editorial Policy
    • Privacy Policy
    • Terms and Conditions
    • Affiliate Disclosure
    • Cookie Policy
    • Disclaimer
    • DMCA
    Explore
    • AI Systems
    • Cyber Reality
    • Future Tech
    • Disruption Lab
    • Signals
    • Tech Pulse
    • Sitemap

    Join the Techurz Brief

    The future does not arrive suddenly.
    Stay ahead with fast, sharp tech signals.

    Type above and press Enter to search. Press Esc to cancel.