Impact
The vulnerability in Oracle PeopleSoft Enterprise HCM Global Payroll Mexico v9.2 allows a low‑privileged attacker with network access via HTTP to create, delete, or modify critical payroll data and to cause a partial denial of service. The flaw resides in the Global Payroll for Mexico component and results in high integrity impact and low availability impact, with no stated confidentiality impact.
Affected Systems
Oracle Corporation’s PeopleSoft Enterprise HCM Global Payroll Mexico product, version 9.2, is affected. The vulnerability is specific to the Global Payroll for Mexico component.
Risk and Exploitability
The CVSS 3.1 Base Score of 5.9 reflects moderate risk, with exploitability considered difficult and the EPSS score indicating a probability of exploitation less than 1%. The vulnerability is not listed in the CISA KEV catalog. Based on the description, the likely attack vector is over the network via HTTP, and the attacker requires only a low‑privilege account on the system. Successful exploitation could compromise data integrity and cause a partial denial of service.
OpenCVE Enrichment