Vulnerability in PeopleSoft Enterprise HCM Shared Components by Oracle
CVE-2021-2455
Key Information:
- Vendor
Oracle
- Vendor
- CVE Published:
- 21 July 2021
What is CVE-2021-2455?
An improper access control vulnerability exists in Oracle's PeopleSoft Enterprise HCM Shared Components, specifically within the Person Search component. This vulnerability can be exploited by an attacker with elevated privileges, allowing them to gain unauthorized access via HTTP. As a result, they may manipulate critical data, including the ability to create, delete, or modify sensitive information accessible within the PeopleSoft Enterprise HCM environment. This can lead to severe implications regarding data integrity and confidentiality.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
PeopleSoft Enterprise HCM Shared Components 9.2
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved