Unauthenticated Access Vulnerability in Oracle PeopleSoft Enterprise PeopleTools
CVE-2026-47015
7.1HIGH
Key Information:
- Vendor
Oracle
- Vendor
- CVE Published:
- 21 July 2026
What is CVE-2026-47015?
A vulnerability exists in Oracle's PeopleSoft Enterprise PeopleTools that allows an unauthenticated attacker with network access to compromise the system. Successful exploitation of this weakness can lead to unauthorized updates, insertions, or deletions of accessible data, as well as unauthorized read access to sensitive information. Moreover, it poses a risk of a partial denial of service, significantly impacting the integrity, confidentiality, and availability of the data managed by the PeopleSoft system. This flaw requires human interaction from an unrelated individual for successful attacks and has implications that may extend beyond the PeopleTools application.
Affected Version(s)
PeopleSoft Enterprise PeopleTools 8.62