Vulnerability Name: | CVE-2009-1989 (CCN-51771) | ||||||||
Assigned: | 2009-07-09 | ||||||||
Published: | 2009-07-09 | ||||||||
Updated: | 2017-08-17 | ||||||||
Summary: | Unspecified vulnerability in the PeopleSoft Enterprise FMS component in Oracle PeopleSoft Enterprise and JD Edwards EnterpriseOne 8.8 SP1, 8.9 Bundle 33, and 9.0 Bundle 24 allows remote authenticated users to affect confidentiality and integrity via unknown vectors. | ||||||||
CVSS v3 Severity: | 4.6 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:N)
| ||||||||
CVSS v2 Severity: | 5.5 Medium (CVSS v2 Vector: AV:N/AC:L/Au:S/C:P/I:P/A:N) 4.0 Medium (Temporal CVSS v2 Vector: AV:N/AC:L/Au:S/C:P/I:P/A:N/E:U/RL:OF/RC:C)
4.0 Medium (CCN Temporal CVSS v2 Vector: AV:N/AC:L/Au:S/C:P/I:P/A:N/E:U/RL:OF/RC:C)
| ||||||||
Vulnerability Type: | CWE-noinfo | ||||||||
Vulnerability Consequences: | Other | ||||||||
References: | Source: MITRE Type: CNA CVE-2009-1989 Source: OSVDB Type: Broken Link 55911 Source: CCN Type: SA35776 Oracle Products Multiple Vulnerabilities Source: SECUNIA Type: Permissions Required, Third Party Advisory 35776 Source: CCN Type: SECTRACK ID: 1022566 Oracle PeopleSoft Enterprise Bugs Let Remote Users Modify Data Source: CCN Type: Oracle Critical Patch Update Advisory - July 2009 Oracle Critical Patch Update Advisory - July 2009 Source: CONFIRM Type: Patch, Vendor Advisory http://www.oracle.com/technetwork/topics/security/cpujul2009-091332.html Source: CCN Type: OSVDB ID: 55911 Oracle PeopleSoft Enterprise FMS Match Workbench SQL Injection Source: BID Type: Third Party Advisory, VDB Entry 35694 Source: CCN Type: BID-35694 Oracle PeopleSoft CVE-2009-1989 Remote PeopleSoft Enterprise FMS Vulnerability Source: SECTRACK Type: Third Party Advisory, VDB Entry 1022566 Source: VUPEN Type: Permissions Required ADV-2009-1900 Source: XF Type: UNKNOWN oracle-pse-jdee-pef-unspecified(51771) Source: XF Type: UNKNOWN oracle-pse-jdee-pef-unspecified(51771) | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: Denotes that component is vulnerable | ||||||||
BACK |