Exploitable Vulnerability in Oracle PeopleSoft Global Payroll
CVE-2025-50062

8.1HIGH

What is CVE-2025-50062?

A vulnerability exists within the Oracle PeopleSoft Enterprise HCM Global Payroll Core product, specifically in the Global Payroll for Core component. It affects versions 9.2.51 and 9.2.52. This issue is particularly concerning as it can be exploited by a low-privileged attacker with network access via HTTP. If successfully exploited, it allows unauthorized creation, deletion, or modification of critical data, and provides access to all data within the PeopleSoft Enterprise HCM Global Payroll Core environment. The potential impacts on confidentiality and integrity are significant, making it crucial for organizations to address this vulnerability promptly.

Affected Version(s)

PeopleSoft Enterprise HCM Global Payroll Core 9.2.51

PeopleSoft Enterprise HCM Global Payroll Core 9.2.52

References

CVSS V3.1

Score:
8.1
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.