CVE-2016-5529 — Improper Access Control in Oracle Peoplesoft Enterprise Peopletools
Severity
8.2HIGHNVD
NVD6.1CNA6.1
EPSS
0.2%
top 55.17%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedOct 25
Latest updateMay 17
Description
Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools component in Oracle PeopleSoft Products 8.54 and 8.55 allows remote attackers to affect confidentiality and integrity via vectors related to Integration Broker, a different vulnerability than CVE-2016-5530 and CVE-2016-8293.
CVSS vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:NExploitability: 2.8 | Impact: 2.7
Affected Packages1 packages
Patches
🔴Vulnerability Details
6GHSA▶
GHSA-hx6j-392x-xphj: Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools component in Oracle PeopleSoft Products 8↗2022-05-17
GHSA▶
GHSA-xhpc-4fvv-ccpw: Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools component in Oracle PeopleSoft Products 8↗2022-05-17
GHSA▶
GHSA-984r-fgr9-vwgq: Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools component in Oracle PeopleSoft Products 8↗2022-05-17
CVEList▶
CVE-2016-5530: Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools component in Oracle PeopleSoft Products 8↗2016-10-25
CVEList▶
CVE-2016-8293: Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools component in Oracle PeopleSoft Products 8↗2016-10-25