Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Arjun Giri

Researcher fromGreen Tick Nepal Pvt. Ltd.
#32919of 53,635
7.8Total CVSS
Vulnerabilities · 1
PT-2025-4254
7.8
2025-01-21
Oracle · Oracle Analytics Desktop · CVE-2025-21532
**Name of the Vulnerable Software and Affected Versions** Oracle Analytics Desktop versions prior to 8.1.0 **Description** The issue is related to a vulnerability in the Oracle Analytics Desktop product, specifically in the Install component. This vulnerability can be easily exploited by a low-privileged attacker with logon access to the infrastructure where Oracle Analytics Desktop is executed, potentially leading to the takeover of Oracle Analytics Desktop. The vulnerability affects the confidentiality, integrity, and availability of the system. **Recommendations** For versions prior to 8.1.0, update to version 8.1.0 or later to resolve the issue. As a temporary workaround, consider restricting access to the Install component to minimize the risk of exploitation. Additionally, ensure that only authorized personnel have logon access to the infrastructure where Oracle Analytics Desktop is executed.