Oracle Peoplesoft Enterprise vulnerabilities
70 known vulnerabilities affecting oracle/peoplesoft_enterprise.
Total CVEs
70
CISA KEV
0
Public exploits
2
Exploited in wild
0
Severity breakdown
CRITICAL15HIGH6MEDIUM42LOW7
Vulnerabilities
Page 2 of 4
CVE-2005-3462P4CRITICALCVSS 10.0≤ 8.46.02v8.442005-11-02
CVE-2005-3462 [CRITICAL] CVE-2005-3462: Unspecified vulnerability in PeopleTools in Oracle PeopleSoft Enterprise 8.44 up to 8.46.02 has unkn
Unspecified vulnerability in PeopleTools in Oracle PeopleSoft Enterprise 8.44 up to 8.46.02 has unknown impact and attack vectors, as identified by Oracle Vuln# PSE02.
nvd
CVE-2005-3464P4CRITICALCVSS 10.0≤ 8.46v8.44+1 more2005-11-02
CVE-2005-3464 [CRITICAL] CVE-2005-3464: Unspecified vulnerability in PeopleTools in Oracle PeopleSoft Enterprise 8.44 up to 8.46 has unknown
Unspecified vulnerability in PeopleTools in Oracle PeopleSoft Enterprise 8.44 up to 8.46 has unknown impact and attack vectors, as identified by Oracle Vuln# PSE04.
nvd
CVE-2008-4007P4MEDIUMCVSS 6.5v8.9.182009-01-14
CVE-2008-4007 [MEDIUM] CVE-2008-4007: Unspecified vulnerability in the PeopleSoft Enterprise Components component in Oracle PeopleSoft Ent
Unspecified vulnerability in the PeopleSoft Enterprise Components component in Oracle PeopleSoft Enterprise and JD Edwards EnterpriseOne 8.9.18 allows remote authenticated users to affect confidentiality, integrity, and availability via unknown vectors.
nvd
CVE-2022-21639P4MEDIUMCVSS 6.1v8.59v8.602022-10-18
CVE-2022-21639 [MEDIUM] CWE-79 CVE-2022-21639: Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Elas
Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Elastic Search Integration). Supported versions that are affected are 8.59 and 8.60. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise PeopleSoft Enterprise PeopleTools. Successful attacks require h
nvd
CVE-2007-2133P4CRITICALCVSS 10.0v8.92007-04-18
CVE-2007-2133 [CRITICAL] CVE-2007-2133: Unspecified vulnerability in the PeopleSoft Enterprise Human Capital Management component in Oracle
Unspecified vulnerability in the PeopleSoft Enterprise Human Capital Management component in Oracle PeopleSoft Enterprise 8.9 has unknown impact and attack vectors, aka PSEHCM01.
nvd
CVE-2022-21602P4MEDIUMCVSS 5.3v8.58v8.59+1 more2022-10-18
CVE-2022-21602 [MEDIUM] CVE-2022-21602: Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Port
Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Portal). Supported versions that are affected are 8.58, 8.59 and 8.60. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise PeopleSoft Enterprise PeopleTools. Successful attacks of this vulnerability can resu
nvd
CVE-2019-2519P4MEDIUMCVSS 6.1v9.22019-01-16
CVE-2019-2519 [MEDIUM] CVE-2019-2519: Vulnerability in the PeopleSoft Enterprise SCM eProcurement component of Oracle PeopleSoft Products
Vulnerability in the PeopleSoft Enterprise SCM eProcurement component of Oracle PeopleSoft Products (subcomponent: Manage Requisition Status). The supported version that is affected is 9.2. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise PeopleSoft Enterprise SCM eProcurement. Successful attacks requi
nvd
CVE-2024-21286P4MEDIUMCVSS 5.4v9.22024-10-15
CVE-2024-21286 [MEDIUM] CVE-2024-21286: Vulnerability in the PeopleSoft Enterprise ELM Enterprise Learning Management product of Oracle Peop
Vulnerability in the PeopleSoft Enterprise ELM Enterprise Learning Management product of Oracle PeopleSoft (component: Enterprise Learning Management). The supported version that is affected is 9.2. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise PeopleSoft Enterprise ELM Enterprise Learning Managem
nvd
CVE-2007-3868P4MEDIUMCVSS 6.5v8.22.15v8.47.13+2 more2007-07-18
CVE-2007-3868 [MEDIUM] CVE-2007-3868: Multiple unspecified vulnerabilities in PeopleTools in Oracle PeopleSoft Enterprise 8.22.15, 8.47.13
Multiple unspecified vulnerabilities in PeopleTools in Oracle PeopleSoft Enterprise 8.22.15, 8.47.13, 8.48.10, and 8.49.02 allows remote authenticated users or attackers to have an unknown impact via multiple vectors, aka (1) PSE01, (2) PSE02, and (3) PSE03.
nvd
CVE-2008-2620P4MEDIUMCVSS 6.5v8.48.17v8.49.112008-07-15
CVE-2008-2620 [MEDIUM] CVE-2008-2620: Unspecified vulnerability in the PeopleSoft PeopleTools component in Oracle PeopleSoft Enterprise an
Unspecified vulnerability in the PeopleSoft PeopleTools component in Oracle PeopleSoft Enterprise and JD Edwards EnterpriseOne 8.48.17 and 8.49.11 has unknown impact and remote authenticated attack vectors, a different vulnerability than CVE-2008-2615, CVE-2008-2616, CVE-2008-2617, CVE-2008-2618, CVE-2008-2621, and CVE-2008-2622.
nvd
CVE-2008-2622P4MEDIUMCVSS 6.5v8.48.17v8.49.112008-07-15
CVE-2008-2622 [MEDIUM] CVE-2008-2622: Unspecified vulnerability in the PeopleSoft PeopleTools component in Oracle PeopleSoft Enterprise an
Unspecified vulnerability in the PeopleSoft PeopleTools component in Oracle PeopleSoft Enterprise and JD Edwards EnterpriseOne 8.48.17 and 8.49.11 has unknown impact and remote authenticated attack vectors, a different vulnerability than CVE-2008-2615, CVE-2008-2616, CVE-2008-2617, CVE-2008-2618, CVE-2008-2620, and CVE-2008-2621.
nvd
CVE-2008-2617P4MEDIUMCVSS 6.5v8.48.17v8.49.112008-07-15
CVE-2008-2617 [MEDIUM] CVE-2008-2617: Unspecified vulnerability in the PeopleSoft PeopleTools component in Oracle PeopleSoft Enterprise an
Unspecified vulnerability in the PeopleSoft PeopleTools component in Oracle PeopleSoft Enterprise and JD Edwards EnterpriseOne 8.48.17 and 8.49.11 has unknown impact and remote authenticated attack vectors, a different vulnerability than CVE-2008-2615, CVE-2008-2616, CVE-2008-2618, CVE-2008-2620, CVE-2008-2621, and CVE-2008-2622.
nvd
CVE-2008-2615P4MEDIUMCVSS 6.5v8.48.17v8.49.112008-07-15
CVE-2008-2615 [MEDIUM] CVE-2008-2615: Unspecified vulnerability in the PeopleSoft PeopleTools component in Oracle PeopleSoft Enterprise an
Unspecified vulnerability in the PeopleSoft PeopleTools component in Oracle PeopleSoft Enterprise and JD Edwards EnterpriseOne 8.48.17 and 8.49.11 has unknown impact and remote authenticated attack vectors, a different vulnerability than CVE-2008-2616, CVE-2008-2617, CVE-2008-2618, CVE-2008-2620, CVE-2008-2621, and CVE-2008-2622.
nvd
CVE-2008-2618P4MEDIUMCVSS 6.5v8.48.17v8.49.112008-07-15
CVE-2008-2618 [MEDIUM] CVE-2008-2618: Unspecified vulnerability in the PeopleSoft PeopleTools component in Oracle PeopleSoft Enterprise an
Unspecified vulnerability in the PeopleSoft PeopleTools component in Oracle PeopleSoft Enterprise and JD Edwards EnterpriseOne 8.48.17 and 8.49.11 has unknown impact and remote authenticated attack vectors, a different vulnerability than CVE-2008-2615, CVE-2008-2616, CVE-2008-2617, CVE-2008-2620, CVE-2008-2621, and CVE-2008-2622.
nvd
CVE-2008-2616P4MEDIUMCVSS 6.5v8.48.17v8.49.112008-07-15
CVE-2008-2616 [MEDIUM] CVE-2008-2616: Unspecified vulnerability in the PeopleSoft PeopleTools component in Oracle PeopleSoft Enterprise an
Unspecified vulnerability in the PeopleSoft PeopleTools component in Oracle PeopleSoft Enterprise and JD Edwards EnterpriseOne 8.48.17 and 8.49.11 has unknown impact and remote authenticated attack vectors, a different vulnerability than CVE-2008-2615, CVE-2008-2617, CVE-2008-2618, CVE-2008-2620, CVE-2008-2621, and CVE-2008-2622.
nvd
CVE-2007-0295P4HIGHCVSS 7.8v8.22.13v8.47.112007-01-17
CVE-2007-0295 [HIGH] CVE-2007-0295: Unspecified vulnerability in Oracle PeopleSoft Enterprise and JD Edwards EnterpriseOne 8.22.13 and 8
Unspecified vulnerability in Oracle PeopleSoft Enterprise and JD Edwards EnterpriseOne 8.22.13 and 8.47.11 has unknown impact and attack vectors in PeopleTools, aka PSE01.
nvd
CVE-2021-35541P4MEDIUMCVSS 5.4v9.22021-10-20
CVE-2021-35541 [MEDIUM] CVE-2021-35541: Vulnerability in the PeopleSoft Enterprise SCM product of Oracle PeopleSoft (component: Supplier Por
Vulnerability in the PeopleSoft Enterprise SCM product of Oracle PeopleSoft (component: Supplier Portal). The supported version that is affected is 9.2. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise PeopleSoft Enterprise SCM. Successful attacks require human interaction from a person other than th
nvd
CVE-2022-21481P4MEDIUMCVSS 5.4v9.22022-04-19
CVE-2022-21481 [MEDIUM] CVE-2022-21481: Vulnerability in the PeopleSoft Enterprise FIN Cash Management product of Oracle PeopleSoft (compone
Vulnerability in the PeopleSoft Enterprise FIN Cash Management product of Oracle PeopleSoft (component: Financial Gateway). The supported version that is affected is 9.2. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise PeopleSoft Enterprise FIN Cash Management. Successful attacks require human inter
nvd
CVE-2010-4426P4MEDIUMCVSS 5.0v8.49.0v8.49.29+4 more2011-01-19
CVE-2010-4426 [MEDIUM] CVE-2010-4426: Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools component in Oracle PeopleSoft an
Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools component in Oracle PeopleSoft and JDEdwards Suite 8.49.0 through 8.49.29, 8.50.0 through 8.50.14, and 8.51.0 through 8.51.04 allows remote attackers to affect integrity, related to PIA Core Technology.
nvd
CVE-2009-1989P4MEDIUMCVSS 5.5v8.8v8.9+1 more2009-07-14
CVE-2009-1989 [MEDIUM] CVE-2009-1989: Unspecified vulnerability in the PeopleSoft Enterprise FMS component in Oracle PeopleSoft Enterprise
Unspecified vulnerability in the PeopleSoft Enterprise FMS component in Oracle PeopleSoft Enterprise and JD Edwards EnterpriseOne 8.8 SP1, 8.9 Bundle 33, and 9.0 Bundle 24 allows remote authenticated users to affect confidentiality and integrity via unknown vectors.
nvd