logo

PeopleSoft RCE Security Bug: New Oracle Fix

ID: 479ffed4-db09-5d44-a722-110f9b2c7cbf

STIX ID: report--479ffed4-db09-5d44-a722-110f9b2c7cbf

Feed Name: securityonline.info

Threat Score
80/100

Date Published: 2026-06-11

Date Updated: 2026-06-11

Author: Do Son

...
...

Oracle issued an emergency advisory for CVE-2026-35273, a critical unauthenticated HTTP remote code execution vulnerability in PeopleSoft PeopleTools 8.61 and 8.62 (CVSS 9.8). The flaw allows remote attackers to compromise systems without credentials, enabling database modification, data exposure, persistent backdoors, and arbitrary OS command execution; administrators are urged to apply vendor patches and mitigations immediately.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.