Vulnerability in Oracle PeopleSoft Enterprise CS Campus Community Frameworks
CVE-2017-3577
6.5MEDIUM
Key Information:
- Vendor
- Oracle
- Vendor
- CVE Published:
- 24 April 2017
Summary
An improper access control vulnerability exists in the Oracle PeopleSoft Enterprise CS Campus Community framework. This flaw allows a high-privileged attacker with network access via HTTP to exploit the system. Successful exploitation can lead to unauthorized creation, modification, or deletion of critical data, ultimately granting the attacker full control over accessible data. Organizations using affected versions should prioritize applying the necessary security patches to protect their data integrity.
Affected Version(s)
PeopleSoft Enterprise CS Campus Community 9.2
References
CVSS V3.1
Score:
6.5
Severity:
MEDIUM
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved