First published: Thu Jul 21 2016(Updated: )
Unspecified vulnerability in the PeopleSoft Enterprise FSCM component in Oracle PeopleSoft Products 9.1 and 9.2 allows remote authenticated users to affect confidentiality and integrity via vectors related to eProcurement.
Credit: secalert_us@oracle.com
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle Peoplesoft Enterprise Scm Eprocurement | =9.1 | |
Oracle Peoplesoft Enterprise Scm Eprocurement | =9.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2016-5467 is considered moderate as it affects confidentiality and integrity for remote authenticated users.
To fix CVE-2016-5467, apply the latest patches provided by Oracle for PeopleSoft Enterprise FSCM components.
CVE-2016-5467 affects remote authenticated users of Oracle PeopleSoft Products 9.1 and 9.2 specifically in the eProcurement module.
CVE-2016-5467 can be exploited through vectors that compromise the confidentiality and integrity of the data being handled in eProcurement.
There are no specific workarounds documented for CVE-2016-5467, and applying the patches is recommended as the primary mitigation.