Security Vulnerability in PeopleSoft Enterprise PeopleTools by Oracle
CVE-2026-60975

7.5HIGH

Key Information:

Vendor

Oracle

Vendor
CVE Published:
18 August 2026

What is CVE-2026-60975?

The vulnerability within Oracle's PeopleSoft Enterprise PeopleTools, specifically affecting versions 8.61 and 8.62, poses a significant risk by allowing a low-privileged attacker with access to the infrastructure to compromise the system. Exploiting this vulnerability could lead to unauthorized creation, deletion, or modification of critical data. Furthermore, successful exploitation may also provide the attacker with complete access to all data accessible via PeopleSoft Enterprise PeopleTools, jeopardizing data integrity and security across potentially affected products.

Affected Version(s)

PeopleSoft Enterprise PeopleTools 8.61

PeopleSoft Enterprise PeopleTools 8.62

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.