漏洞描述 【漏洞对象】Oracle Advanced Support系统 【涉及版本】Oracle Advanced Support系统 【漏洞描述】 OracleAdvanced Support系统存在SQL注入漏洞,可获得数据库相关信息。
相关漏洞推荐 POC CVE-2025-13486: Advanced Custom Fields Extended < 0.9.2 - Remote Code Execution POC oracle-ebs-sqllog-exposure: Oracle EBS SQL Log - Exposure POC wp-svg-support-fpd: WordPress SVG Support - Full Path Disclosure POC wp-acf-fpd: Advanced Custom Fields (ACF) - Full Path Disclosure Campcodes Advanced_voting_management_system不正确的权限分配漏洞(CVE-2025-14889) POC CVE-2019-14950: WP Live Chat Support <= 8.0.27 — Stored Cross-Site Scripting POC CVE-2021-2135: Oracle WebLogic Server - Remote Code Execution POC CVE-2019-25213: WordPress Advanced Access Manager - Path Traversal Oracle Identity Manager /iam/governance/applicationmanagement/api/v1/applications/groovyscriptstatus;.wadl 命令执行漏洞(CVE-2025-61757) Oracle Identity Manager 访问控制不当漏洞 POC CVE-2025-61757: Oracle Identity Manager REST WebServices - Authentication Bypass Oracle_E_Business 存在SSRF(CVE-2025-61884) (CVE-2025-61757)Oracle Identity Manager REST WebServices远程接管漏洞