HIGHVulnerability
Verified
Global
CISA KEV: Oracle PeopleSoft Enterprise PeopleTools — Oracle PeopleSoft Enterprise PeopleTools Missing Authentication for Critical Function Vulnerability
·Source: CISA KEV
Updated:
Executive Summary
Oracle PeopleSoft Enterprise PeopleTools contains a missing authentication for critical function vulnerability which could allow an unauthenticated attacker to obtain takeover of PeopleSoft Enterprise PeopleTools.
Analysis
Oracle PeopleSoft Enterprise PeopleTools contains a missing authentication for critical function vulnerability which could allow an unauthenticated attacker to obtain takeover of PeopleSoft Enterprise PeopleTools. Added to CISA Known Exploited Vulnerabilities catalog on 2026-06-12. Remediation due: 2026-06-15. Known to be used in ransomware campaigns.