Oracle PeopleSoft Enterprise HCM Human Resources
cpe:2.3:a:oracle:peoplesoft_enterprise_human_capital_management_human_resources:*:*:*:*:*:*:*
- 9.2
An easily exploitable vulnerability has been identified in Oracle PeopleSoft Enterprise HCM Human Resources version 9.2, specifically within the Company Directory/Org Chart Viewer and Employee Snapshot components. This vulnerability allows an unauthenticated attacker with network access via HTTP to compromise the application. Successful exploitation requires human interaction from a third party. While the vulnerability resides in the HCM Human Resources product, it may also significantly affect other products, leading to a scope change. Exploitation of this vulnerability could result in unauthorized access to read, update, insert, or delete certain accessible data within PeopleSoft Enterprise HCM Human Resources.
Exploitation of this vulnerability could lead to unauthorized read access, as well as unauthorized updates, inserts, or deletions of some accessible data within PeopleSoft Enterprise HCM Human Resources. Additionally, according to Oracle, successful attacks could impact other products, causing a scope change.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.