PeopleSoft RCE Security Bug: New Oracle Fix
ID: 479ffed4-db09-5d44-a722-110f9b2c7cbf
STIX ID: report--479ffed4-db09-5d44-a722-110f9b2c7cbf
Feed Name: securityonline.info
Threat Score
Oracle issued an emergency advisory for CVE-2026-35273, a critical unauthenticated HTTP remote code execution vulnerability in PeopleSoft PeopleTools 8.61 and 8.62 (CVSS 9.8). The flaw allows remote attackers to compromise systems without credentials, enabling database modification, data exposure, persistent backdoors, and arbitrary OS command execution; administrators are urged to apply vendor patches and mitigations immediately.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
