Documented CVEs
2 vulnerabilities cataloged in the Hermes intelligence repository.
| Parameter | Technical Specification |
|---|---|
| Official Name | Oracle E-Business Suite |
| Vendor / Project | oracle |
| Canonical ID | oracle:ebusiness_suite |
| Versioning Scheme | generic |
| CPE Identifiers | cpe:2.3:a:oracle:e-business_suite:*:*:*:*:*:*:*:*cpe:2.3:a:oracle:concurrent_processing:*:*:*:*:*:*:*:* |
| Overall Posture | CRITICAL |
| Recommended Safe Release | 12.2.14-CPU-OCT-2025 |
Documented CVEs
2 vulnerabilities cataloged in the Hermes intelligence repository.
CISA KEV Entries
1 flaws with confirmed active in-the-wild exploitation.
Weaponized Exploits
1 vulnerabilities with publicly available PoCs or weaponized exploit tooling.
Remediation Target
Recommended upgrade to 12.2.14-CPU-OCT-2025 to neutralize known flaws.
Progression of Hermes Threat Score (HTS) posture and maximum EPSS probability over the last 30 days:
0 / 100
= Stable over 30d
99.7 %
= Stable over 30d
1
Active in-the-wild exploitation
| CVE | CVSS Score | EPSS Probability | CISA KEV | Affected Versions | Fixed In | Hermes Analysis |
|---|---|---|---|---|---|---|
| CVE-2025-61882 | 9.8 (CRITICAL) | 99.7% | CISA KEV | v12.2.3 to v12.2.14 | 12.2.14-CPU-OCT-2025 | Analysis β |
| CVE-2025-50105 | 8.1 (HIGH) | 0.4% | No | v12.2.3 to v12.2.14 | 12.2.14-CPU-JUL-2025 | Analysis β |
Vulnerabilities impacting Oracle E-Business Suite are actively leveraged in real-world intrusion campaigns:
Are you operating Oracle E-Business Suite in your infrastructure? Inspect your running build to evaluate applicability, confidence score, and security deltas: