Vulnerability in Oracle PeopleSoft Enterprise CC Run Control Management
CVE-2025-21563

4.3MEDIUM

Key Information:

Vendor
Oracle
Vendor
CVE Published:
21 January 2025

Summary

A vulnerability has been identified in the Run Control Management component of Oracle PeopleSoft Enterprise CC Common Application Objects, which could allow a low-privileged attacker with network access via HTTP to manipulate the application. This exploitation can lead to unauthorized updates, inserts, or deletions of data within some application objects, impacting the integrity of the data being processed.

Affected Version(s)

PeopleSoft Enterprise CC Common Application Objects 9.2

References

CVSS V3.1

Score:
4.3
Severity:
MEDIUM
Confidentiality:
None
Integrity:
Low
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.