Vulnerability in eProcurement Component of Oracle PeopleSoft Products
CVE-2019-2519
Key Information:
- Vendor
Oracle
- Vendor
- CVE Published:
- 16 January 2019
What is CVE-2019-2519?
The vulnerability in the eProcurement component of Oracle PeopleSoft Products permits unauthorized access to sensitive data. An unauthenticated attacker can exploit this issue remotely via HTTP, provided that they trick a user into interacting with a specially crafted request. While the vulnerability primarily resides within the eProcurement subsystem, its successful exploitation could lead to unauthorized modifications and access to additional data across the PeopleSoft suite. Organizations utilizing PeopleSoft Enterprise SCM must be vigilant in securing their instances to prevent potential data breaches and integrity issues.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
PeopleSoft Enterprise SCM eProcurement 9.2
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved