$ intel.mask2.ca

ADVISORY · 2026-06-12 · SRC MS-ISAC · CRITICAL
2026-06-12 critical REL 8/10

Oracle PeopleSoft PeopleTools vulnerability enables remote code execution

post-secondarygovernmenthealthcarefinance

A vulnerability in PeopleSoft Enterprise PeopleTools Updates Environment Management component allows network-accessible attackers to achieve remote code execution and complete system compromise. PeopleSoft is widely deployed by large organizations for managing HR, payroll, finance, supply chain, and campus operations. Organizations using this software should prioritize patching this critical flaw.

Why it matters in Western Canada: Western Canadian post-secondary institutions, government agencies, healthcare organizations, and financial institutions commonly deploy PeopleSoft for enterprise resource planning and campus management. This vulnerability could compromise sensitive institutional data including student records, employee information, and financial systems.


Summary generated from the original advisory. Read the full source: ms-isac

Source
https://www.cisecurity.org/advisory/a-vulnerability-in-oracle-peoplesoft-peopletools-could-allow-for-remote-code-execution_2026-059
CVEs
None listed
Tags
oracle, peopleesoft, rce, erp, patching
Provenance
mask2-ti-pipeline (AI-assisted, human-reviewable)