Impact
This vulnerability in Oracle PeopleSoft Enterprise CS Campus Community allows a low‑privileged attacker with network access over HTTP to compromise the application. If successfully exploited, the attacker can take full control of the system, causing loss of confidentiality, integrity, and availability. The weakness is classified in the Security component and carries a CVSS 3.1 base score of 7.5, indicating a high impact.
Affected Systems
The affected product is Oracle PeopleSoft Enterprise CS Campus Community, version 9.2.38. No other versions are listed as vulnerable in the current advisory.
Risk and Exploitability
The CVSS rating of 7.5 reflects significant risk, yet the EPSS score of less than 1 % suggests that exploitation in the wild is unlikely at present. The vulnerability is not listed in CISA's KEV catalog. Attackers must have remote HTTP access and a low‑privilege account. Organizations should treat it as a high‑priority risk until a patch is applied.
OpenCVE Enrichment