Oracle PeopleSoft Enterprise PeopleTools是美国甲骨文(Oracle)公司的用于为 PeopleSoft 应用程序提供与用户的需求和期望保持同步的技术。 Oracle PeopleSoft 的 PeopleSoft Enterprise PeopleTools product 存在安全漏洞,该漏洞源于 Portal 模块允许未经身份验证的攻击者通过 HTTP 进行网络访问来危害 PeopleSoft Enterprise PeopleTools。成功攻击此漏洞可能会导
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Oracle Corporation | PeopleSoft Enterprise PT PeopleTools | 8.59 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | Leveraging arbitrary file read to RCE on Oracle PeopleSoft | https://github.com/tuo4n8/CVE-2023-22047 | POC Details |
| 2 | Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component- Portal). Supported versions that are affected are 8.59 and 8.60. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise PeopleSoft Enterprise PeopleTools. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all PeopleSoft Enterprise PeopleTools accessible data. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2023/CVE-2023-22047.yaml | POC Details |
No public POC found.
Login to generate AI POC| CVE-2023-21975 | 9.0 CRITICAL | Oracle Application Express 安全漏洞 |
| CVE-2023-21974 | 9.0 CRITICAL | Oracle Application Express 安全漏洞 |
| CVE-2023-22062 | 8.5 HIGH | Oracle Hyperion 安全漏洞 |
| CVE-2023-22014 | 8.4 HIGH | Oracle PeopleSoft Enterprise PeopleTools 安全漏洞 |
| CVE-2023-22018 | 8.1 HIGH | Oracle Virtualization 安全漏洞 |
| CVE-2023-22023 | 7.8 HIGH | Oracle Solaris 安全漏洞 |
| CVE-2023-22060 | 7.6 HIGH | Oracle Hyperion 安全漏洞 |
| CVE-2023-22022 | 6.5 MEDIUM | Oracle Health Sciences Applications 安全漏洞 |
| CVE-2023-22037 | 6.5 MEDIUM | Oracle E-Business Suite 安全漏洞 |
| CVE-2023-22040 | 6.5 MEDIUM | Oracle Fusion Middleware 安全漏洞 |
| CVE-2023-21994 | 6.5 MEDIUM | Oracle Fusion Middleware 安全漏洞 |
| CVE-2023-22055 | 6.1 MEDIUM | Oracle JD Edwards 安全漏洞 |
| CVE-2023-22035 | 6.1 MEDIUM | Oracle E-Business Suite 跨站脚本漏洞 |
| CVE-2023-22042 | 6.1 MEDIUM | Oracle E-Business Suite 安全漏洞 |
| CVE-2023-21961 | 6.0 MEDIUM | Oracle Essbase 安全漏洞 |
| CVE-2023-22043 | 5.9 MEDIUM | Oracle Java SE 安全漏洞 |
| CVE-2023-22053 | 5.9 MEDIUM | Oracle MySQL 安全漏洞 |
| CVE-2023-21983 | 5.6 MEDIUM | Oracle Application Express 安全漏洞 |
| CVE-2023-22017 | 5.5 MEDIUM | Oracle Virtualization 安全漏洞 |
| CVE-2023-22011 | 5.4 MEDIUM | Oracle Business Intelligence Enterprise Edition 安全漏洞 |
Showing top 20 of 56 CVEs. View all on vendor page → →
No comments yet