PT-2025-42983 · Oracle · Peoplesoft Enterprise Fin Payables
Publicado
2025-10-21
·
Atualizado
2025-10-22
·
CVE-2025-61762
CVSS v3.1
6.3
Média
| Vetor | AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L |
Name of the Vulnerable Software and Affected Versions
Oracle PeopleSoft versions 9.2
Description
A flaw exists within the PeopleSoft Enterprise FIN Payables component that could allow a low-privileged attacker with network access via HTTP to compromise the system. Successful exploitation may lead to unauthorized data modification, insertion, or deletion, as well as unauthorized read access to certain data and a partial denial of service.
Recommendations
Update PeopleSoft Enterprise FIN Payables to a version beyond 9.2.
Correção
DoS
Improper Access Control
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Peoplesoft Enterprise Fin Payables