#VU52581 Improper input validation in PeopleSoft Enterprise PeopleTools - CVE-2017-1000061
Published: April 26, 2021
PeopleSoft Enterprise PeopleTools
Oracle
Description
The vulnerability allows a local non-authenticated attacker to read data or crash the application.
The vulnerability exists due to improper input validation within the XML Messaging (xmlSec) component in PeopleSoft Enterprise PeopleTools. A local non-authenticated attacker can exploit this vulnerability to read data or crash the application.