Oracle PeopleSoft Cash Management Unauthorized Data Access and Modification Vulnerability

Vulnerability

A vulnerability exists in Oracle PeopleSoft Enterprise FIN Cash Management version 9.2, specifically within the Cash Management component. This easily exploitable issue allows a low-privileged attacker with network access via HTTP to compromise the application. Successful exploitation could lead to unauthorized read access to certain subsets of accessible data, as well as unauthorized updates, inserts, or deletions of some data within PeopleSoft Enterprise FIN Cash Management.

Impact

Exploitation of this vulnerability could result in unauthorized access to read, update, insert, or delete data within PeopleSoft Enterprise FIN Cash Management.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
1.3
exploitability
5.2
remediation
0.0
relevance
0.0
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.