CVE Feed

    Dashboard / CVE / CVE-2025-61881

    CVE-2025-61881

    Vulnerability in the Java VM component of Oracle Database Server. Supported versions that are affected are 19.3-19.28, 21.3-21.19 and 23.4-23.9. Difficult to exploit vulnerability allows unauthenticated attacker with network access via Oracle Net to compromise Java VM. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Java VM accessible data. CVSS 3.1 Base Score 5.9 (Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N).

    Published:Oct 21, 2025
    Last Modified:Oct 24, 2025
    EPS:Oct 21, 2025
    EPSS Score:0.00028
    CVSS Score:5.9

    Affected Products

    Vendor
    Oracle
    Product
    Database
    Vendor
    Oracle
    Product
    Database Server
    Vendor
    Oracle
    Product
    Java Virtual Machine
    Vendor
    Oracle
    Product
    Oracle Database

    Exploits

    No exploit reference

    Common Weakness Enumeration

    Related CVEs

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High