CVE-2025-61882 is a remote code execution vulnerability affecting the Oracle E-Business Suite. Oracle’s vendor advisory indicates the issue is remotely exploitable without authentication, meaning an attacker can target vulnerable E-Business Suite deployments over the network without valid credentials. Successful exploitation may allow RCE on the affected instance.
The IONIX research team is tracking ongoing exploitation attempts and recommends immediate patching. Potentially affected assets are outlined in this post.
References:

