PT-2025-42982 · Oracle · Peoplesoft Enterprise Fin Maintenance Management

Published

2025-10-21

·

Updated

2025-10-29

·

CVE-2025-61761

CVSS v3.1

5.4

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Oracle PeopleSoft versions 9.2
Description A flaw exists within the Work Order Management component of Oracle PeopleSoft Enterprise FIN Maintenance Management. A low-privileged attacker with network access via HTTP can compromise the system. Successful exploitation may lead to unauthorized data modification, insertion, or deletion, as well as unauthorized data reading.
Recommendations Update PeopleSoft Enterprise FIN Maintenance Management version 9.2 to a newer, secure version.

Fix

Improper Access Control

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2025-61761

Affected Products

Peoplesoft Enterprise Fin Maintenance Management