CVE-2010-4418
Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools component in Oracle PeopleSoft and JDEdwards Suite 8.50.11 through 8.50.15 and 8.51GA through 8.51.05 allows remote attackers to affect confidentiality, integrity, and availability,…
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (1.67%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools component in Oracle PeopleSoft and JDEdwards Suite 8.50.11 through 8.50.15 and 8.51GA through 8.51.05 allows remote attackers to affect confidentiality, integrity, and availability, related to PIA Core Technology.
- CVSS 2.0
- 7.5 HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
- EPSS
- 1.67% probability · 75th percentile
- CISA KEV
- Not listed
- Affected
- oracle/peoplesoft and jdedwards product suite · oracle/peoplesoft enterprise
- Source
- secalert_us@oracle.com
References
- http://secunia.com/advisories/42924Vendor Advisory
- http://www.oracle.com/technetwork/topics/security/cpujan2011-194091.htmlVendor Advisory
- http://www.securityfocus.com/bid/45865
- http://www.securitytracker.com/id?1024978
- http://www.vupen.com/english/advisories/2011/0147
- https://exchange.xforce.ibmcloud.com/vulnerabilities/64785
- http://secunia.com/advisories/42924Vendor Advisory
- http://www.oracle.com/technetwork/topics/security/cpujan2011-194091.htmlVendor Advisory
- http://www.securityfocus.com/bid/45865
- http://www.securitytracker.com/id?1024978
- http://www.vupen.com/english/advisories/2011/0147
- https://exchange.xforce.ibmcloud.com/vulnerabilities/64785
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.