CVE-2025-8107

Severity CVSS v4.0:
Pending analysis
Type:
CWE-269 Improper Privilege Management
Publication date:
24/07/2025
Last modified:
25/07/2025

Description

In OceanBase&amp;#39;s Oracle tenant mode, a malicious user with specific privileges can achieve privilege escalation to SYS-level access by executing carefully crafted commands.<br /> <br /> <br /> <br /> <br /> This vulnerability only affects OceanBase tenants in Oracle mode. Tenants in MySQL mode are unaffected.

References to Advisories, Solutions, and Tools