Sploitus

CVE-2025-61882

29 known exploits for CVE-2025-61882

Vulnerability in the Oracle Concurrent Processing product of Oracle E-Business Suite (component: BI Publisher Integration). Supported versions that are affected are 12.2.3-12.2.14. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Concurrent Processing. Successful attacks of this vulnerability can result in takeover of Oracle Concurrent Processing. CVSS 3.1 Base Score 9.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H).

Oracle Concurrent Processing
≀ 12.2.14
Fix
Available
CVSS 3.1
9.8 CRITICAL
EPSS
99.7% (100th percentile)
Weakness
CWE-287
NVD status
Analyzed
Published
2025-10-05
CVE-2025-61882 at NVD
Authoritative description, scoring and affected products

29 known exploits for CVE-2025-61882

Proof-of-concept code and exploit modules indexed by Sploitus

CVE-2025-61882-Oracle-EBS
2026-08-28 KitPloitKITPLOIT
CVE-2025-61882-Oracle-BI-Publisher-RCE
2026-08-28 KitPloitKITPLOIT
Enterprise-Information-Security-Risk-Assessment-Oracle-E-Business-Suite-Case-Study
2026-08-27 KitPloitKITPLOIT
http-oracle-ebs-cve-2025-61882.nse
2026-08-27 KitPloitKITPLOIT
cve-2025-61882-oracle_ebs_rce_reproduction
2026-08-27 KitPloitKITPLOIT
CVE-2025-61882
2026-08-27 KitPloitKITPLOIT
Blackash-CVE-2025-61882
2026-08-27 KitPloitKITPLOIT
watchTowr-vs-Oracle-E-Business-Suite-CVE-2025-61882
2026-08-27 KitPloitKITPLOIT
CVE-2025-61882-Oracle-E-Business-Suite-Pre-Auth-RCE-Exploit
2026-08-27 KitPloitKITPLOIT
CVE-2025-61882-CVE-2025-61884
2026-08-27 KitPloitKITPLOIT
CVE-2025-61882-CVE-2025-61884
2026-08-25 KitPloitKITPLOIT
CVE-2025-61882
2026-08-25 KitPloitKITPLOIT
CVE-2025-61882-POC
2026-08-24 KitPloitKITPLOIT
Exploit for Improper Authentication in Oracle Concurrent_Processing
2026-07-23 razureinkGITHUB
πŸ“„ Oracle E-Business Suite 12.2.14 Remote Code Execution
2026-07-08 indoushkaPACKETSTORMRuby
Exploit for Improper Authentication in Oracle Concurrent_Processing
2026-06-29 WahyuAndikaPutraGITHUB
Exploit for Improper Authentication in Oracle Concurrent_Processing
2026-02-10 George0PapasotiriouGITHUB
πŸ“„ Oracle E-Business Suite 12.2.3 Request Smuggling
2026-01-30 indoushkaPACKETSTORMPHP
πŸ“„ Oracle E-Business Suite CVE-2025-61882 Remote Code Execution
2026-01-22 Mathieu Dupas, Jake Knott, watchTowr Labs, Sina Kheirkhah, SonnyPACKETSTORMRuby
Exploit for Improper Authentication in Oracle Concurrent_Processing
2025-11-21 Zhert-labGITHUB
Exploit for Improper Authentication in Oracle Concurrent_Processing
2025-10-23 godnishGITHUB
Exploit for CRLF Injection in Oracle Concurrent_Processing
2025-10-16 MindflareXGITHUB
Exploit for CRLF Injection in Oracle Concurrent_Processing
2025-10-16 AdityaBhatt3010GITHUB
Exploit for CRLF Injection in Oracle Concurrent_Processing
2025-10-10 zerozenxlabsGITHUB
Exploit for Improper Access Control in Oracle Concurrent_Processing
2025-10-06 watchtowrlabsGITHUB
Exploit for Improper Access Control in Oracle Concurrent_Processing
2025-10-06 SachinartGITHUB
Exploit for Improper Authentication in Oracle Concurrent_Processing
2025-10-05 rxeriumGITHUB
Exploit for CVE-2025-61882
2025-10-05 rxeriumGITHUB
Oracle E-Business Suite CVE-2025-61882 RCE
2025-10-04 watchTowr (Sonny, Sina Kheirkhah, Jake Knott), Mathieu DupasMETASPLOITRuby