CVE-2026-61073Disclosure(oracle / peoplesoft_enterprise_fin_common_objects)

LOWCVSS 7.5 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

Vulnerability in the PeopleSoft Enterprise FIN Common Objects Brazil product of Oracle PeopleSoft (component: Purchasing). The supported version that is affected is 9.1. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise PeopleSoft Enterprise FIN Common Objects Brazil. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all PeopleSoft Enterprise FIN Common Objects Brazil accessible data. CVSS 3.1 Base Score 7.5 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N).

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-284

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • peoplesoft_enterprise_fin_common_objects

Threat summary

  • 1 mentions across 1 observed day

What's happening

  • Technical details provided in 1 signal
  • Disclosure: 1 classified signal
  • 1 total mentions across 1 day

Affected systems

Vendors
Products
peoplesoft_enterprise_fin_common_objects

1 version affected across 1 product

Deep dive

Activity timeline1 mentions / 1d
00111Mentions · 2026-07-31: 1Technical Details · 2026-07-31: 107-31
Signal classification1 categories
Disclosure
1100.0%
Referenced assets1 URL
Full discourse1 post
  • DailyCVE@dailycve
    Disclosure

    🔴 #Oracle PeopleSoft Enterprise FIN Common Objects Brazil – Improper Access Control (#CVE-2026-61073) – HIGH -DC-Jul2026-1131 https://dailycve.com/oracle-peoplesoft-enterprise-fin-common-objects-brazil-improper-access-control-cve-2026-61073-high-dc-jul2026-1131/

    Post summary

    A new Oracle PeopleSoft CVE (CVE-2026-61073) involving improper access control has been disclosed as high severity; no PoC, exploit, or mitigation details are provided.

    0000050
    224 followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Apporaclepeoplesoft_enterprise_fin_common_objects9.1--

Explore more