Project Subscriptions
No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
| Link | Providers |
|---|---|
| https://www.oracle.com/security-alerts/cpujul2026.html |
|
Sun, 02 Aug 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Local Privilege Escalation in Oracle PeopleSoft SCM Supplier Contract Management 9.2 |
Thu, 30 Jul 2026 12:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Low Privilege Access Exploit Enables Takeover of PeopleSoft Enterprise SCM Supplier Contract Management | |
| Weaknesses | CWE-284 |
Fri, 24 Jul 2026 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 23 Jul 2026 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Low Privilege Access Exploit Enables Takeover of PeopleSoft Enterprise SCM Supplier Contract Management | |
| Weaknesses | CWE-269 CWE-284 |
Tue, 21 Jul 2026 22:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Vulnerability in the PeopleSoft Enterprise SCM Supplier Contract Management product of Oracle PeopleSoft (component: Security). The supported version that is affected is 9.2. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where PeopleSoft Enterprise SCM Supplier Contract Management executes to compromise PeopleSoft Enterprise SCM Supplier Contract Management. While the vulnerability is in PeopleSoft Enterprise SCM Supplier Contract Management, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in takeover of PeopleSoft Enterprise SCM Supplier Contract Management. CVSS 3.1 Base Score 8.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H). | |
| First Time appeared |
Oracle
Oracle peoplesoft Enterprise Scm Supplier Contract Management |
|
| CPEs | cpe:2.3:a:oracle:peoplesoft_enterprise_scm_supplier_contract_management:9.2:*:*:*:*:*:*:* | |
| Vendors & Products |
Oracle
Oracle peoplesoft Enterprise Scm Supplier Contract Management |
|
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: oracle
Published:
Updated: 2026-07-24T14:21:41.816Z
Reserved: 2026-07-08T15:51:55.610Z
Link: CVE-2026-61063
Updated: 2026-07-24T14:21:36.253Z
No data.
No data.
OpenCVE Enrichment
Updated: 2026-08-02T20:15:13Z