Vulnerability in PeopleSoft Enterprise FIN Pay/Bill Management by Oracle
CVE-2026-60595

5.5MEDIUM

What is CVE-2026-60595?

A significant vulnerability exists in Oracle's PeopleSoft Enterprise FIN Pay/Bill Management, specifically in version 9.2. This flaw allows attackers with low-level access to exploit the system and potentially gain unauthorized access to sensitive data. Malicious actors can leverage this weakness to compromise the integrity of the Pay/Bill Management module, exposing critical information to unauthorized parties. Organizations utilizing this software are encouraged to review security protocols and apply necessary patches as per Oracle's advisory to mitigate risks.

Affected Version(s)

PeopleSoft Enterprise FIN Pay/Bill Management 9.2

References

CVSS V3.1

Score:
5.5
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.