Unauthenticated Network Vulnerability in Oracle Financial Services Applications
CVE-2025-53037

9.8CRITICAL

What is CVE-2025-53037?

An unaddressed vulnerability in Oracle Financial Services Analytical Applications Infrastructure permits unauthenticated attackers with network access to compromise the system through HTTP. This susceptibility affects versions 8.0.7.9, 8.0.8.7, and 8.1.2.5, allowing potential attackers to gain control of the infrastructure. Successful exploitation can lead to severe implications for confidentiality, integrity, and availability, jeopardizing organizational data and operational continuity.

Affected Version(s)

Oracle Financial Services Analytical Applications Infrastructure 8.0.7.9

Oracle Financial Services Analytical Applications Infrastructure 8.0.8.7

Oracle Financial Services Analytical Applications Infrastructure 8.1.2.5

References

CVSS V3.1

Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.