CVE-2025-21568

CVSS 3.1 Score 4.5 of 10 (medium)

Details

Published Jan 21, 2025

Summary

CVE-2025-21568 is a vulnerability affecting Oracle Hyperion Data Relationship Management's Access and Security component (11.2.19.0.000 version). This easily exploitable issue allows high-privileged attackers to gain unauthorized access to critical data by compromising the product via network access through HTTP. Successful attacks require human interaction, resulting in potential confidentiality impacts with a CVSS Base Score of 4.5.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Oracle Hyperion Data Relationship Management

Affected Vendors

  • Oracle Corp