QID 376547

Date Published: 2022-04-20

QID 376547: Oracle PeopleSoft Enterprise PeopleTools Product Multiple Vulnerabilities (CPUAPR2022)

Oracle's PeopleSoft applications are designed to address the most complex business requirements. PeopleSoft PeopleTools provides a comprehensive development toolset that supports the development and runtime of PeopleSoft applications.

Affected Versions:
Oracle PeopleSoft Enterprise PeopleTools 8.58
Oracle PeopleSoft Enterprise PeopleTools 8.59

QID Detection Logic (Authenticated):
The authenticated check looks for the installed version of PeopleTools and the corresponding patch.

Successful exploitation of this vulnerability allows remotely exploitation without authentication.

  • CVSS V3 rated as High - 7.5 severity.
  • CVSS V2 rated as High - 6 severity.
  • Solution
    Newer versions are available to download. For more information about this product or to check for new releases, go to the Oracle PeopleSoft Products.
    Vendor References
    Software Advisories
    Advisory ID Software Component Link
    CPUAPR2022 URL Logo www.oracle.com/security-alerts/cpuapr2022.html