Executive brief
Oracle PeopleSoft Enterprise FIN Common Objects Argentina, a financial management suite used for business operations, contains a vulnerability in its Cash Management component. An unauthenticated attacker can exploit this over the network to disrupt the availability of the system. This could lead to a partial denial of service, potentially impacting financial processing and cash management operations.
Technical details
A vulnerability exists in the Cash Management component of Oracle PeopleSoft Enterprise FIN Common Objects Argentina version 9.1. The flaw is easily exploitable by an unauthenticated attacker with network access via HTTP. Successful exploitation allows the attacker to compromise the system's availability, resulting in a partial denial of service (DoS). The vulnerability is tracked as CVE-2026-61070 and was addressed in the Oracle Critical Patch Update for July 2026.
Affected products
- Oracle PeopleSoft Enterprise FIN Common Objects Argentina 9.1
Timeline
- 2026-07-21: advisory: Oracle published the July 2026 Critical Patch Update.
- 2026-07-21: disclosed: CVE-2026-61070 was published to the NVD.