
CVE-2025-21563
https://notcve.org/view.php?id=CVE-2025-21563
21 Jan 2025 — Vulnerability in the PeopleSoft Enterprise CC Common Application Objects product of Oracle PeopleSoft (component: Run Control Management). The supported version that is affected is 9.2. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise PeopleSoft Enterprise CC Common Application Objects. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of PeopleSoft Enterprise CC Common Application Objects acc... • https://www.oracle.com/security-alerts/cpujan2025.html • CWE-863: Incorrect Authorization •

CVE-2025-21562
https://notcve.org/view.php?id=CVE-2025-21562
21 Jan 2025 — Vulnerability in the PeopleSoft Enterprise CC Common Application Objects product of Oracle PeopleSoft (component: Run Control Management). The supported version that is affected is 9.2. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise PeopleSoft Enterprise CC Common Application Objects. Successful attacks of this vulnerability can result in unauthorized read access to a subset of PeopleSoft Enterprise CC Common Application Objects accessible data. CV... • https://www.oracle.com/security-alerts/cpujan2025.html • CWE-863: Incorrect Authorization •

CVE-2024-21264
https://notcve.org/view.php?id=CVE-2024-21264
15 Oct 2024 — Vulnerability in the PeopleSoft Enterprise CC Common Application Objects product of Oracle PeopleSoft (component: Activity Guide Composer). The supported version that is affected is 9.2. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise PeopleSoft Enterprise CC Common Application Objects. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of PeopleSoft Enterprise CC Common Application Objects ac... • https://www.oracle.com/security-alerts/cpuoct2024.html •