Privilege Escalation Vulnerability in Oracle PeopleSoft Products
CVE-2017-3522
Key Information:
- Vendor
Oracle
- Vendor
- CVE Published:
- 24 April 2017
What is CVE-2017-3522?
An easily exploitable vulnerability exists in the Vendor subcomponent of the PeopleSoft Enterprise SCM eSupplier Connection of Oracle PeopleSoft Products, specifically affecting version 9.2. This vulnerability allows a high-privileged attacker with network access via HTTP to compromise the integrity of the system. Successful exploitation can lead to unauthorized creation, deletion, or modification of critical data within the PeopleSoft system, posing a significant risk to organizations relying on these solutions.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
PeopleSoft Enterprise SCM eSupplier Connection 9.2
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved