Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Peoplesoft_enterprise_peopletools
(Oracle)Repositories |
• https://github.com/bcgit/bc-java
• https://github.com/jquery/jquery |
#Vulnerabilities | 330 |
Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
2008-01-17 | CVE-2008-0344 | Unspecified vulnerability in the Oracle Spatial component in Oracle Database 10.1.0.5 and 10.2.0.3 has unknown impact and remote attack vectors, aka DB07. | Application_server, Collaboration_suite, Database_server, E\-Business_suite, Peoplesoft_enterprise_peopletools | N/A | ||
2008-01-17 | CVE-2008-0343 | Unspecified vulnerability in the Oracle Spatial component in Oracle Database 9.0.1.5 FIPS+, 9.2.0.8, 9.2.0.8DV, and 10.1.0.5 has unknown impact and remote attack vectors, aka DB06. | Application_server, Collaboration_suite, Database_server, E\-Business_suite, Peoplesoft_enterprise_peopletools | N/A | ||
2008-01-17 | CVE-2008-0340 | Multiple unspecified vulnerabilities in Oracle Database 9.0.1.5 FIPS+, 9.2.0.8, 9.2.0.8DV, 10.1.0.5, and 10.2.0.3 have unknown impact and remote attack vectors, related to the (1) Advanced Queuing component (DB02) and (2) Oracle Spatial component (DB04). | Application_server, Collaboration_suite, Database_server, E\-Business_suite, Peoplesoft_enterprise_peopletools | N/A | ||
2007-07-18 | CVE-2007-3854 | Multiple unspecified vulnerabilities in Oracle Database 9.0.1.5+, 9.2.0.7, and 10.1.0.5 allow remote authenticated users to have unknown impact via (1) SYS.DBMS_PRVTAQIS in the Advanced Queuing component (DB02) and (2) MDSYS.MD in the Spatial component (DB12). NOTE: Oracle has not disputed reliable researcher claims that DB02 is for SQL injection and DB12 is for a buffer overflow. | Apex, Application_server, Collaboration_suite, Database_server, E\-Business_suite, Peoplesoft_enterprise_customer_relationship_management, Peoplesoft_enterprise_human_capital_management, Peoplesoft_enterprise_peopletools, Secure_enterprise_search | N/A | ||
2019-04-23 | CVE-2019-2637 | Vulnerability in the PeopleSoft Enterprise PeopleTools component of Oracle PeopleSoft Products (subcomponent: PIA Core Technology). Supported versions that are affected are 8.55, 8.56 and 8.57. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise PeopleSoft Enterprise PeopleTools. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in PeopleSoft Enterprise PeopleTools, attacks... | Peoplesoft_enterprise_peopletools | 6.1 | ||
2019-04-23 | CVE-2019-2598 | Vulnerability in the PeopleSoft Enterprise PeopleTools component of Oracle PeopleSoft Products (subcomponent: SQR). Supported versions that are affected are 8.55, 8.56 and 8.57. Easily exploitable vulnerability allows high privileged attacker with network access via HTTP to compromise PeopleSoft Enterprise PeopleTools. While the vulnerability is in PeopleSoft Enterprise PeopleTools, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in... | Peoplesoft_enterprise_peopletools | 8.7 | ||
2019-04-23 | CVE-2019-2597 | Vulnerability in the PeopleSoft Enterprise PeopleTools component of Oracle PeopleSoft Products (subcomponent: PIA Core Technology). Supported versions that are affected are 8.55, 8.56 and 8.57. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise PeopleSoft Enterprise PeopleTools. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized update,... | Peoplesoft_enterprise_peopletools | 5.4 | ||
2019-04-23 | CVE-2019-2594 | Vulnerability in the PeopleSoft Enterprise PT PeopleTools component of Oracle PeopleSoft Products (subcomponent: Application Server). Supported versions that are affected are 8.55, 8.56 and 8.57. Difficult to exploit vulnerability allows low privileged attacker with network access via HTTP to compromise PeopleSoft Enterprise PT PeopleTools. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all PeopleSoft... | Peoplesoft_enterprise_peopletools | 6.8 | ||
2019-04-23 | CVE-2019-2586 | Vulnerability in the PeopleSoft Enterprise PT PeopleTools component of Oracle PeopleSoft Products (subcomponent: RemoteCall). Supported versions that are affected are 8.55, 8.56 and 8.57. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise PeopleSoft Enterprise PT PeopleTools. Successful attacks of this vulnerability can result in unauthorized read access to a subset of PeopleSoft Enterprise PT PeopleTools accessible data. CVSS 3.0 Base... | Peoplesoft_enterprise_peopletools | 4.3 | ||
2019-04-23 | CVE-2019-2573 | Vulnerability in the PeopleSoft Enterprise PeopleTools component of Oracle PeopleSoft Products (subcomponent: Fluid Homepage & Navigation). Supported versions that are affected are 8.56 and 8.57. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise PeopleSoft Enterprise PeopleTools. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized... | Peoplesoft_enterprise_peopletools | 4.3 |