CVE-2017-3315

Vulnerability in the PeopleSoft Enterprise HCM ePerformance component of Oracle PeopleSoft Products (subcomponent: Security). The supported version that is affected is 9.2. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise PeopleSoft Enterprise HCM ePerformance. Successful attacks of this vulnerability can result in unauthorized read access to a subset of PeopleSoft Enterprise HCM ePerformance accessible data. CVSS v3.0 Base Score 4.3 (Confidentiality impacts).
Configurations

Configuration 1 (hide)

cpe:2.3:a:oracle:peoplesoft_enterprise_human_capital_management_eperformance:9.2:*:*:*:*:*:*:*

History

21 Nov 2024, 03:25

Type Values Removed Values Added
References () http://www.oracle.com/technetwork/security-advisory/cpujan2017-2881727.html - Patch, Vendor Advisory () http://www.oracle.com/technetwork/security-advisory/cpujan2017-2881727.html - Patch, Vendor Advisory
References () http://www.securityfocus.com/bid/95510 - Third Party Advisory, VDB Entry () http://www.securityfocus.com/bid/95510 - Third Party Advisory, VDB Entry
References () http://www.securitytracker.com/id/1037634 - () http://www.securitytracker.com/id/1037634 -

Information

Published : 2017-01-27 22:59

Updated : 2024-11-21 03:25


NVD link : CVE-2017-3315

Mitre link : CVE-2017-3315

CVE.ORG link : CVE-2017-3315


JSON object : View

Products Affected

oracle

  • peoplesoft_enterprise_human_capital_management_eperformance
CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor