Vulnerability in Oracle PeopleSoft Enterprise HCM Shared Components
CVE-2024-21122
5.4MEDIUM
Key Information:
- Vendor
- Oracle
- Vendor
- CVE Published:
- 16 July 2024
Summary
A vulnerability exists in the Oracle PeopleSoft Enterprise HCM Shared Components, specifically within the Text Catalog component. This flaw allows a low-privileged attacker with network access to exploit the system, impacting the integrity and confidentiality of accessed data. While a successful exploit demands human interaction from an uninvolved party, the consequences can extend beyond the immediate product, potentially affecting other associated applications. Exploits may result in unauthorized modifications, deletions, or readings of sensitive data stored within the PeopleSoft environment.
Affected Version(s)
PeopleSoft Enterprise HCM Shared Components 9.2
References
CVSS V3.1
Score:
5.4
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
Required
Scope:
Changed
Timeline
Vulnerability published