¡¾Îó²îͨ¸æ¡¿Oracle E-Business Suite Ô¶³Ì´úÂëÖ´ÐÐÎó²î(CVE-2025-61882)
Ðû²¼Ê±¼ä 2025-10-09Ò»¡¢Îó²î¸ÅÊö
Îó²îÃû³Æ | Oracle E-Business Suite Ô¶³Ì´úÂëÖ´ÐÐÎó²î | ||
CVE ID | CVE-2025-61882 | ||
Îó²îÀàÐÍ | RCE | ·¢Ã÷ʱ¼ä | 2025-10-9 |
Îó²îÆÀ·Ö | 9.8 | Îó²îÆ·¼¶ | ÑÏÖØ |
¹¥»÷ÏòÁ¿ | ÍøÂç | ËùÐèȨÏÞ | ÎÞ |
ʹÓÃÄÑ¶È | µÍ | Óû§½»»¥ | ²»ÐèÒª |
PoC/EXP | ÒѹûÕæ | ÔÚҰʹÓà | ÒÑ·¢Ã÷ |
Oracle E-Business Suite£¨EBS£©ÊÇÒ»¸ö×ÛºÏÐÔµÄÆóÒµ×ÊÔ´ÍýÏ루ERP£©Èí¼þÌ×¼þ£¬Ö¼ÔÚ×ÊÖúÆóÒµÖÎÀí²ÆÎñ¡¢¹©Ó¦Á´¡¢ÈËÁ¦×ÊÔ´¡¢¿Í»§¹ØÏµµÈÒªº¦ÓªÒµÁ÷³Ì¡£EBSÌṩÆÕ±éµÄÄ£¿é»¯Ó¦Ó㬰üÀ¨²ÆÎñÖÎÀí¡¢²É¹º¡¢ÖÆÔì¡¢¿â´æ¡¢ÏîÄ¿ÖÎÀíµÈ£¬Äܹ»Öª×ã²î±ð¹æÄ£ºÍÐÐÒµµÄÐèÇó¡£×÷ΪOracleµÄÆì½¢²úÆ·£¬EBSÌṩ¸ß¶ÈµÄ¿É¶¨ÖÆÐԺͼ¯³ÉÄÜÁ¦£¬Ö§³ÖÈ«Çò»¯²Ù×÷£¬²¢Í¨¹ýÓëÆäËûOracleÊÖÒÕ¿ÍÕ»µÄÎ޷켯³É£¬×ÊÖúÆóÒµÌá¸ßЧÂÊ¡¢½µµÍ±¾Ç®¡¢ÓÅ»¯¾öÒé¡£
2025Äê10ÔÂ9ÈÕ£¬×ðÁú¿Ê±¼¯ÍÅVSRC¼à²âµ½Oracle E-Business SuiteÖеÄÒ»¸öÑÏÖØÇå¾²Îó²î£¬±£´æÓÚÆäOracle Concurrent Processing×é¼þµÄBI Publisher¼¯ÀÖ³ÉÄÜÖС£¸ÃÎó²îÔÊÐíδ¾Éí·ÝÑéÖ¤µÄ¹¥»÷Õßͨ¹ýÍøÂçÔ¶³ÌÖ´ÐдúÂ룬¼´¹¥»÷ÕßÎÞÐèÓû§ÃûºÍÃÜÂë¼´¿ÉÌᳫ¹¥»÷¡£ÀÖ³ÉʹÓôËÎó²î¿ÉÄܵ¼Ö¹¥»÷ÕßÔÚÄ¿µÄϵͳÉÏÖ´ÐÐí§Òâ´úÂ룬´Ó¶øÊµÏÖÍêÈ«¿ØÖÆ£¬ÑÏÖØÍþвϵͳÇå¾²¡£Òѱ»¶à¸ö¹¥»÷ÕßʹÓ㬰üÀ¨ÀÕË÷Èí¼þÍŻ
¶þ¡¢Ó°Ïì¹æÄ£
Èý¡¢Çå¾²²½·¥
3.1 Éý¼¶°æ±¾
ÏÂÔØÁ´½Ó£ºhttps://www.oracle.com/security-alerts/alert-cve-2025-61882.html/
3.2 ÔÝʱ²½·¥
ÔÝÎÞ¡£
3.3 ͨÓý¨Òé
? ÆôÓÃÇ¿ÃÜÂëÕ½ÂÔ²¢ÉèÖÃΪ°´ÆÚÐ޸ġ£


¾©¹«Íø°²±¸11010802024551ºÅ