PT-2025-29618 · Oracle · Oracle Java Se+1

Dong-Uk Kim

·

Published

2025-07-15

·

Updated

2026-05-08

·

CVE-2025-50063

CVSS v3.1

7.3

High

VectorAV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Oracle Java SE versions 8u451 and 8u451-perf
Description An issue exists in the Oracle Java SE Install component that allows a low-privileged attacker with logon access to the infrastructure where Oracle Java SE executes to compromise the software. Successful attacks require human interaction from a person other than the attacker and can result in a takeover of Oracle Java SE. This applies to the installation process on client deployments of Java.
Recommendations Update Oracle Java SE to a version newer than 8u451-perf.

Fix

RCE

Weakness Enumeration

Related Identifiers

BDU:2025-08911
BIT-JAVA-2025-50063
BIT-JAVA-MIN-2025-50063
BIT-JRE-2025-50063
CVE-2025-50063

Affected Products

Java Platform
Oracle Java Se