Vulnerability in Oracle Agile PLM Framework by Oracle affecting Integration Services
CVE-2025-21556
Key Information:
- Vendor
- Oracle
- Vendor
- CVE Published:
- 21 January 2025
Badges
Summary
A vulnerability exists in Oracle's Agile PLM Framework affecting version 9.3.6, specifically within Agile Integration Services. This flaw allows a low privileged attacker with network access via HTTP to potentially compromise the system. While primarily associated with the Agile PLM Framework, exploitation could also affect related products, highlighting the vulnerability's broader impact. Successful exploitation can lead to complete takeover of the Agile PLM Framework, undermining confidentiality, integrity, and availability.
Affected Version(s)
Oracle Agile PLM Framework 9.3.6
Get notified when SecurityVulnerability.io launches alerting π
Well keep you posted π§
News Articles
Oracle Releases January 2025 Patch to Address 318 Flaws Across Major Products
Apply Oracle's January 2025 Patch fixing 318 vulnerabilities, including CVE-2025-21556 (CVSS 9.9), to prevent risks.
6 hours ago
References
CVSS V3.1
Timeline
- πΎ
Exploit known to exist
- π°
First article discovered by The Hacker News
Vulnerability published
Vulnerability Reserved