Filesystem Vulnerability in Oracle Solaris by Oracle Systems
CVE-2025-30690

7.2HIGH

Key Information:

Vendor
Oracle
Vendor
CVE Published:
15 April 2025

Summary

A vulnerability exists in the Oracle Solaris Filesystem component, potentially allowing a high-privileged attacker with logon access to the infrastructure to compromise the system. Exploitation requires human interaction from a third party, indicating that additional safeguards may be necessary. While the vulnerability resides in Oracle Solaris, the consequences of a successful attack can extend beyond Solaris itself, potentially affecting other connected products. This vulnerability exposes Oracle Solaris to risks of unauthorized access and control.

Affected Version(s)

Oracle Solaris 11

References

CVSS V3.1

Score:
7.2
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
High
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.