PT-2025-43006 · Oracle · Oracle Financial Services Analytical Applications Infrastructure

Published

2025-10-21

·

Updated

2025-10-24

·

CVE-2025-61756

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Oracle Financial Services Analytical Applications Infrastructure versions 8.0.7.9 through 8.1.2.5
Description An easily exploitable issue exists in the Oracle Financial Services Analytical Applications Infrastructure component of Oracle Financial Services Applications. An unauthenticated attacker with network access via HTTP can compromise the system. Successful exploitation may lead to a denial-of-service (DOS) condition, causing a hang or frequent crashes of the Oracle Financial Services Analytical Applications Infrastructure.
Recommendations Oracle Financial Services Analytical Applications Infrastructure version 8.0.7.9 should be updated. Oracle Financial Services Analytical Applications Infrastructure version 8.0.8.7 should be updated. Oracle Financial Services Analytical Applications Infrastructure version 8.1.2.5 should be updated.

Fix

DoS

Missing Authentication

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2025-16364
CVE-2025-61756

Affected Products

Oracle Financial Services Analytical Applications Infrastructure