Description
Oracle has released an emergency security update to address a critical, unauthenticated remote-code-execution vulnerability in Oracle E-Business Suite (CVE-2025-61882, CVSS 9.8). Threat actors linked to the Clop extortion campaign have exploited this flaw to steal data from vulnerable EBS instances and are sending extortion emails to affected organisations. Oracle advises customers to apply the update immediately; the new patch requires customers to have installed the October 2023 Critical Patch Update before applying the fix.
Attack Details
Remediation
The Guyana National CIRT recommends that users and administrators review this alert and apply it where necessary.
PDF Download: Oracle E-Business Suite Zero-Day (CVE-2025-61882) Exploited in Clop Data-Theft Campaign
References