原标题: Oracle Issues Emergency Patch for E-Business Suite Zero-Day CVE-2025-61882
第一项始终是图钉的来源。总体可信度是各份资料对上方所用开始和结束时间支持程度的加权平均;资料每比最新的一份旧 180 天,权重减半。
甲骨文安全警报公告 CVE-2025-61882 的修订历史列有“2025 年 10 月 4 日 第 1 版 首次发布”。
Oracle's[1] second E-Business Suite alert, for a 7.5-rated Configurator Runtime UI flaw, released 11 October 2025.
CrowdStrike puts the first known exploitation at 9 August 2025; watchTowr found the leaked exploit is a chain needing a single HTTP request.[1]
CISA added CVE-2025-61882 Oracle[1][2] E-Business Suite to its Known Exploited Vulnerabilities catalog on 6 October 2025.
Reports the alert and Mandiant CTO Charles Carmakal's statement that Clop exploited CVE-2025-61882 and July-patched flaws to steal data in August 2025.[1]
有遗漏或错误吗?用你自己的话说明:能佐证此图钉的链接、不同的开始或结束日期及理由,或缺失、有误的信息。AI 会对照此图钉的来源进行核实,搜索更好的来源,并添加任何支持你说法的页面。图钉自身的来源仍然最重要。