Vulnerabilities
Vulnerable Software
Peoplesoft:  >> Peopletools  >> 8.10  Security Vulnerabilities
PeopleSoft Gateway Administration servlet (gateway.administration) in PeopleTools 8.43 and earlier allows remote attackers to obtain the full pathnames for server-side include (SSI) files via an HTTP request with an invalid value.
CVSS Score
5.0
EPSS Score
0.003
Published
2003-12-15
Cross-site scripting (XSS) vulnerability in PeopleSoft IScript environment for PeopleTools 8.43 and earlier allows remote attackers to insert arbitrary web script via a certain HTTP request to IScript.
CVSS Score
4.3
EPSS Score
0.003
Published
2003-12-15
PeopleSoft PeopleTools 8.1x, 8.2x, and 8.4x allows remote attackers to execute arbitrary commands by uploading a file to the IClient Servlet, guessing the insufficiently random (system time) name of the directory used to store the file, and directly requesting that file.
CVSS Score
7.5
EPSS Score
0.01
Published
2003-12-15
psdoccgi.exe in PeopleSoft PeopleTools 8.4 through 8.43 allows remote attackers to read arbitrary files via the (1) headername or (2) footername arguments.
CVSS Score
5.0
EPSS Score
0.008
Published
2003-11-13
Directory traversal vulnerability in PeopleTools 8.10 through 8.18, 8.40, and 8.41 allows remote attackers to overwrite arbitrary files via the SchedulerTransfer servlet.
CVSS Score
5.0
EPSS Score
0.014
Published
2003-03-18


Contact Us

Shodan ® - All rights reserved