Vulnerability in Fleet Patching & Provisioning of Oracle Database Server
CVE-2025-30702
5.3MEDIUM
Summary
A vulnerability exists within the Fleet Patching and Provisioning component of Oracle Database Server, affecting versions 19.3 through 19.26. This vulnerability can be exploited by an unauthenticated attacker who has network access via HTTP, potentially leading to unauthorized read access to certain sensitive data within the Fleet Patching and Provisioning system. Organizations using affected versions are advised to assess their network security and apply appropriate mitigations to safeguard their data assets.
Affected Version(s)
Oracle Database Server 19.3 <= 19.26
References
CVSS V3.1
Score:
5.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved