CVE-2025-30758: Infoleak
Vulnerability in the Siebel CRM End User product of Oracle Siebel CRM (component: User Interface). Supported versions that are affected are 25.0-25.5. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Siebel CRM End User. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Siebel CRM End User accessible data. CVSS 3.1 Base Score 5.3 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N).
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2025-30758?
CVE-2025-30758 is classified as an easily exploitable vulnerability that poses significant risk due to its potential to allow unauthenticated attackers to compromise the Siebel CRM End User.
How do I fix CVE-2025-30758?
To fix CVE-2025-30758, it is recommended to apply the latest security patches and updates provided by Oracle for the affected versions of Siebel CRM.
What versions of Oracle Siebel CRM are affected by CVE-2025-30758?
CVE-2025-30758 affects the versions 25.0 to 25.5 of Oracle Siebel CRM End User.
Can CVE-2025-30758 be exploited remotely?
Yes, CVE-2025-30758 can be exploited remotely by unauthenticated attackers with network access via HTTP.
What component of Oracle Siebel CRM is affected by CVE-2025-30758?
The affected component in CVE-2025-30758 is the User Interface of the Siebel CRM End User product.