PT-2025-42982 · Oracle · Peoplesoft Enterprise Fin Maintenance Management
Published
2025-10-21
·
Updated
2025-10-29
·
CVE-2025-61761
CVSS v3.1
5.4
Medium
| Vector | AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
Oracle PeopleSoft versions 9.2
Description
A flaw exists within the Work Order Management component of Oracle PeopleSoft Enterprise FIN Maintenance Management. A low-privileged attacker with network access via HTTP can compromise the system. Successful exploitation may lead to unauthorized data modification, insertion, or deletion, as well as unauthorized data reading.
Recommendations
Update PeopleSoft Enterprise FIN Maintenance Management version 9.2 to a newer, secure version.
Fix
Improper Access Control
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Peoplesoft Enterprise Fin Maintenance Management