Oracle Peoplesoft Enterprise PT PeopleTools 8.58

CPE Details

Oracle Peoplesoft Enterprise PT PeopleTools 8.58
8.58
2021-09-02
15h32 +00:00
2021-09-07
13h51 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:oracle:peoplesoft_enterprise_pt_peopletools:8.58:*:*:*:*:*:*:*

Informations

Vendor

oracle

Product

peoplesoft_enterprise_pt_peopletools

Version

8.58

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2020-13956 2020-12-02 15h20 +00:00 Apache HttpClient versions prior to version 4.5.13 and 5.0.3 can misinterpret malformed authority component in request URIs passed to the library as java.net.URI object and pick the wrong target host for request execution.
5.3
Medium
CVE-2017-18640 2019-12-11 23h00 +00:00 The Alias feature in SnakeYAML before 1.26 allows entity expansion during a load operation, a related issue to CVE-2003-1564.
7.5
High
CVE-2019-12402 2019-08-28 22h00 +00:00 The file name encoding algorithm used internally in Apache Commons Compress 1.15 to 1.18 can get into an infinite loop when faced with specially crafted inputs. This can lead to a denial of service attack if an attacker can choose the file names inside of an archive created by Compress.
7.5
High
CVE-2019-10086 2019-08-20 18h10 +00:00 In Apache Commons Beanutils 1.9.2, a special BeanIntrospector class was added which allows suppressing the ability for an attacker to access the classloader via the class property available on all Java objects. We, however were not using this by default characteristic of the PropertyUtilsBean.
7.3
High