
Cloud Vulnerability DB
A community-led vulnerabilities database
CVE-2020-2775 is a vulnerability in the Portal component of PeopleSoft Enterprise PeopleTools. The vulnerability affects versions 8.56, 8.57, and 8.58 of the software. It allows unauthenticated attackers with network access via HTTP to compromise the PeopleSoft Enterprise PeopleTools system (Oracle CPUApr2020).
The vulnerability has a CVSS Base Score of 5.3, indicating a medium severity level. The attack vector is network-based, requiring HTTP access to the target system. The vulnerability can be exploited without authentication or user interaction (Oracle CPUApr2020).
Successful exploitation of this vulnerability can result in unauthorized access to critical data or complete access to all PeopleSoft Enterprise PeopleTools Portal accessible data (Oracle CPUApr2020).
Oracle has released patches for this vulnerability as part of the April 2020 Critical Patch Update. Organizations using affected versions of PeopleSoft Enterprise PeopleTools (8.56, 8.57, and 8.58) should apply the security patches as soon as possible (Oracle CPUApr2020).
Source: This report was generated using AI
Free Vulnerability Assessment
Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.
Get a personalized demo
"Best User Experience I have ever seen, provides full visibility to cloud workloads."
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
"We know that if Wiz identifies something as critical, it actually is."