Public exploit available
Public proof-of-concept or exploit code exists (ExploitDB / Metasploit / Nuclei).

CVE-2007-0297

4 documents4 sources
Severity
4.0MEDIUM
EPSS
27.7%
top 3.56%
CISA KEV
Not in KEV
Exploit
PoC available
Public exploit / PoC exists
Timeline
PublishedJan 17
Latest updateMay 1

Description

Unspecified vulnerability in Oracle PeopleSoft Enterprise and JD Edwards EnterpriseOne 8.47.11 and 8.48.06 has unknown impact and attack vectors in PeopleTools, aka PSE03.

CVSS vector

AV:N/AC:L/C:N/I:P/A:NExploitability: 8.0 | Impact: 2.9

Affected Packages2 packages

NVDoracle/enterpriseone8.47.11, 8.48.06+1
NVDoracle/peoplesoft_enterprise8.47.11, 8.48.06+1

Patches

🔴Vulnerability Details

2
GHSA
GHSA-g3cw-c848-p46h: Unspecified vulnerability in Oracle PeopleSoft Enterprise and JD Edwards EnterpriseOne 82022-05-01
CVEList
CVE-2007-0297: Unspecified vulnerability in Oracle PeopleSoft Enterprise and JD Edwards EnterpriseOne 82007-01-17

💥Exploits & PoCs

1
Exploit-DB
Oracle January 2007 Security Update - Multiple Vulnerabilities2007-01-16
CVE-2007-0297 (MEDIUM CVSS 4) | Unspecified vulnerability in Oracle | cvebase.io