Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2025-21578


Vulnerability in Oracle Secure Backup (component: General). Supported versions that are affected are 12.1.0.1, 12.1.0.2, 12.1.0.3, 18.1.0.0, 18.1.0.1 and 18.1.0.2. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle Secure Backup executes to compromise Oracle Secure Backup. Successful attacks of this vulnerability can result in takeover of Oracle Secure Backup. CVSS 3.1 Base Score 6.7 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H).


Published

2025-04-15T21:15:48.240

Last Modified

2025-04-17T21:37:12.170

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 6.7 (MEDIUM)

Weaknesses
  • Type: Secondary
    CWE-732

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application oracle secure_backup 12.1.0.1 Yes
Application oracle secure_backup 12.1.0.2 Yes
Application oracle secure_backup 12.1.0.3 Yes
Application oracle secure_backup 18.1.0.0 Yes
Application oracle secure_backup 18.1.0.1 Yes
Application oracle secure_backup 18.1.0.2 Yes

References