Vulnerability in Oracle PeopleSoft Products: Security Flaw in Enterprise HCM
CVE-2017-10304
Key Information:
- Vendor
Oracle
- Vendor
- CVE Published:
- 19 October 2017
What is CVE-2017-10304?
An exploitable security vulnerability exists in the PeopleSoft Enterprise HCM component of Oracle PeopleSoft Products. This flaw allows low-privileged attackers with network access via HTTP to manipulate data within the system. While the vulnerability resides in PeopleSoft Enterprise HCM, its successful exploitation can lead to unauthorized alterations, such as updates, insertions, or deletions of sensitive data. The attack requires human interaction, which indicates that the system's defenses could be bypassed through social engineering techniques. Additionally, the breach may result in unauthorized access to confidential information across additional, interconnected PeopleSoft products, heightening the risk of data exposure.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
PeopleSoft Enterprise HCM Human Resources 9.2
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved