CVE-2025-21568
CVSS 3.1 Score 4.5 of 10 (medium)
Details
Published Jan 21, 2025
Summary
CVE-2025-21568 is a vulnerability affecting Oracle Hyperion Data Relationship Management's Access and Security component (11.2.19.0.000 version). This easily exploitable issue allows high-privileged attackers to gain unauthorized access to critical data by compromising the product via network access through HTTP. Successful attacks require human interaction, resulting in potential confidentiality impacts with a CVSS Base Score of 4.5.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Oracle Hyperion Data Relationship Management
Affected Vendors
- Oracle Corp