← Back to browse · API

CVE-2023-22047

Severity
HIGH
CVSS
7.5
EPSS
0.7698
Risk score
56.94
CISA KEV
No
PoC
No
Published
2023-07-18
Modified
2024-09-13
First seen
2026-08-07
Aliases
EUVD-2023-26212, GHSA-5Q43-WWHH-V8WH
Products
Oracle Corporation:PeopleSoft Enterprise PT PeopleTools 8.59, Oracle Corporation:PeopleSoft Enterprise PT PeopleTools 8.60
Sources
euvd EUVD-2023-26212

Description

Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Portal). Supported versions that are affected are 8.59 and 8.60. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise PeopleSoft Enterprise PeopleTools. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all PeopleSoft Enterprise PeopleTools accessible data. CVSS 3.1 Base Score 7.5 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N).

References