cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2024-21154,https://securityvulnerability.io/vulnerability/CVE-2024-21154,Vulnerability in PeopleSoft Enterprise HCM Human Resources by Oracle,"This vulnerability exists in Oracle's PeopleSoft Enterprise HCM Human Resources product, allowing low-privileged attackers with network access through HTTP to potentially gain unauthorized read access to sensitive data. The supported version affected is 9.2, making it crucial for organizations to patch this vulnerability to protect their data integrity and confidentiality.",Oracle,Peoplesoft Enterprise Hcm Human Resources,4.3,MEDIUM,0.0004299999854993075,false,,false,false,false,,,false,false,,2024-07-16T23:15:00.000Z,0 CVE-2023-21992,https://securityvulnerability.io/vulnerability/CVE-2023-21992,Vulnerability in Oracle PeopleSoft Enterprise HCM Human Resources Product,"A vulnerability exists within Oracle’s PeopleSoft Enterprise HCM Human Resources product in the Administer Workforce component. This flaw allows low-privileged attackers with network access via HTTP to exploit the system. Successful exploitation can lead to unauthorized modifications, including updates, inserts, or deletions of accessible data within the application. Additionally, it poses a risk of unauthorized read access to sensitive data. Ensuring proper access controls is critical to safeguarding against potential unauthorized activities.",Oracle,Peoplesoft Enterprise Hcm Human Resources,5.4,MEDIUM,0.00044999999227002263,false,,false,false,false,,,false,false,,2023-04-18T20:15:00.000Z,0 CVE-2020-2561,https://securityvulnerability.io/vulnerability/CVE-2020-2561,Unauthorized Access Vulnerability in Oracle PeopleSoft HCM,"An unauthorized access vulnerability exists in the Oracle PeopleSoft Enterprise HCM Human Resources product, specifically within the Company Directory / Org Chart Viewer component. This vulnerability allows low privileged attackers with network access via HTTP to compromise the system, potentially leading to unauthorized read access to sensitive data. Affected users of PeopleSoft Enterprise HCM 9.2 should be aware of this risk, as it can expose confidential information and compromise data integrity.",Oracle,Peoplesoft Enterprise Hcm Human Resources,4.3,MEDIUM,0.000539999979082495,false,,false,false,false,,,false,false,,2020-01-15T16:34:01.000Z,0 CVE-2019-2951,https://securityvulnerability.io/vulnerability/CVE-2019-2951,Network Vulnerability in Oracle PeopleSoft HCM Human Resources,"A vulnerability exists in the Oracle PeopleSoft Enterprise HCM Human Resources product that allows low privileged attackers to exploit network access via HTTP. Affected users of version 9.2 may face unauthorized read access to sensitive data. This flaw highlights potential security risks associated with network communications, emphasizing the importance of securing web-accessible applications to prevent data breaches.",Oracle,Peoplesoft Enterprise Hcm Human Resources,4.3,MEDIUM,0.000539999979082495,false,,false,false,false,,,false,false,,2019-10-16T17:40:56.000Z,0 CVE-2018-3068,https://securityvulnerability.io/vulnerability/CVE-2018-3068,,"Vulnerability in the PeopleSoft Enterprise HCM Human Resources component of Oracle PeopleSoft Products (subcomponent: Compensation). The supported version that is affected is 9.2. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise PeopleSoft Enterprise HCM Human Resources. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in PeopleSoft Enterprise HCM Human Resources, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of PeopleSoft Enterprise HCM Human Resources accessible data as well as unauthorized read access to a subset of PeopleSoft Enterprise HCM Human Resources accessible data. CVSS 3.0 Base Score 6.1 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N).",Oracle,Peoplesoft Enterprise Hcm Human Resources,6.1,MEDIUM,0.0011099999537691474,false,,false,false,false,,,false,false,,2018-07-18T13:00:00.000Z,0 CVE-2018-2654,https://securityvulnerability.io/vulnerability/CVE-2018-2654,,"Vulnerability in the PeopleSoft Enterprise HCM Human Resources component of Oracle PeopleSoft Products (subcomponent: Company Dir / Org Chart Viewer). The supported version that is affected is 9.2. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise PeopleSoft Enterprise HCM Human Resources. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in PeopleSoft Enterprise HCM Human Resources, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of PeopleSoft Enterprise HCM Human Resources accessible data as well as unauthorized read access to a subset of PeopleSoft Enterprise HCM Human Resources accessible data. CVSS 3.0 Base Score 6.1 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N).",Oracle,Peoplesoft Enterprise Hcm Human Resources,6.1,MEDIUM,0.001290000043809414,false,,false,false,false,,,false,false,,2018-01-18T02:00:00.000Z,0 CVE-2018-2681,https://securityvulnerability.io/vulnerability/CVE-2018-2681,,"Vulnerability in the PeopleSoft Enterprise HCM Human Resources component of Oracle PeopleSoft Products (subcomponent: Security). The supported version that is affected is 9.2. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise PeopleSoft Enterprise HCM Human Resources. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of PeopleSoft Enterprise HCM Human Resources accessible data as well as unauthorized read access to a subset of PeopleSoft Enterprise HCM Human Resources accessible data. CVSS 3.0 Base Score 5.4 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N).",Oracle,Peoplesoft Enterprise Hcm Human Resources,5.4,MEDIUM,0.0008099999977275729,false,,false,false,false,,,false,false,,2018-01-18T02:00:00.000Z,0 CVE-2017-10306,https://securityvulnerability.io/vulnerability/CVE-2017-10306,,"Vulnerability in the PeopleSoft Enterprise HCM component of Oracle PeopleSoft Products (subcomponent: Security). The supported version that is affected is 9.2. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise PeopleSoft Enterprise HCM. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of PeopleSoft Enterprise HCM accessible data as well as unauthorized read access to a subset of PeopleSoft Enterprise HCM accessible data. CVSS 3.0 Base Score 4.6 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:N).",Oracle,Peoplesoft Enterprise Hcm Human Resources,4.6,MEDIUM,0.0008099999977275729,false,,false,false,false,,,false,false,,2017-10-19T17:00:00.000Z,0 CVE-2017-10304,https://securityvulnerability.io/vulnerability/CVE-2017-10304,,"Vulnerability in the PeopleSoft Enterprise HCM component of Oracle PeopleSoft Products (subcomponent: Security). The supported version that is affected is 9.2. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise PeopleSoft Enterprise HCM. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in PeopleSoft Enterprise HCM, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of PeopleSoft Enterprise HCM accessible data as well as unauthorized read access to a subset of PeopleSoft Enterprise HCM accessible data. CVSS 3.0 Base Score 5.4 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N).",Oracle,Peoplesoft Enterprise Hcm Human Resources,5.4,MEDIUM,0.0008099999977275729,false,,false,false,false,,,false,false,,2017-10-19T17:00:00.000Z,0