PT-2025-16434 · Oracle · Oracle Solaris

Published

2025-04-15

·

Updated

2025-04-15

·

CVE-2025-30700

CVSS v3.1

3.5

Low

VectorAV:N/AC:L/PR:L/UI:R/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions Oracle Solaris version 11
Description The issue affects the Pluggable authentication module component of Oracle Solaris, allowing a low-privileged attacker with network access via HTTP to compromise the system. Successful attacks require human interaction from a person other than the attacker and can result in unauthorized read access to a subset of Oracle Solaris accessible data.
Recommendations For Oracle Solaris version 11, update to a version that includes the fix for this issue, as no specific workaround is provided.

Fix

Improper Access Control

Weakness Enumeration

Related Identifiers

CVE-2025-30700

Affected Products

Oracle Solaris