CYBERSECURITYTRACKER
TRACKING6,877 stories in this site build1,441 vulnerability news stories in this site build
Permanent story citation

NCSC-2026-0381 [1.00] [M/H] Kwetsbaarheden verholpen in Oracle PeopleSoft Enterprise

This page keeps the story as Cybersecurity Tracker first published it. If the tracker later corrects it, the correction appears below the original and never replaces it.

Back to newsStory 7519

As cited

Copy frozen at (site build).

vulnerabilities

NCSC-2026-0381 [1.00] [M/H] Kwetsbaarheden verholpen in Oracle PeopleSoft Enterprise

Oracle patched 16 vulnerabilities across PeopleSoft Enterprise products, including PeopleTools, PRTL Interaction Hub, and CC Common Application Objects. Four of the vulnerabilities can be exploited remotely without authentication, with potential impacts including unauthorized access to sensitive data, data modification, complete system compromise, and service disruption. CVE-2026-83017 has the highest CVSS score of 8.8 and requires a low-privilege account, while CVE-2026-73954 scores 8.1 and allows unauthenticated remote exploitation via HTTP but is rated difficult to exploit.

Why it matters: Organizations running Oracle PeopleSoft Enterprise should prioritize patching CVE-2026-73954 and the three other unauthenticated remote vulnerabilities to prevent unauthorized access and potential complete system takeover.

Source published
First seen by Cybersecurity Tracker

Source attribution

Glossary