psdoccgi.exe in PeopleSoft PeopleTools 8.4 through 8.43 allows remote attackers to read arbitrary files via the (1) headername or (2) footername arguments.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Peopletools | Peoplesoft | 8.15 | 8.15 |
Peopletools | Peoplesoft | 8.19 | 8.19 |
Peopletools | Peoplesoft | 8.42 | 8.42 |
Peopletools | Peoplesoft | 8.43 | 8.43 |
Peopletools | Peoplesoft | 8.12 | 8.12 |
Peopletools | Peoplesoft | 8.10 | 8.10 |
Peopletools | Peoplesoft | 8.17 | 8.17 |
Peopletools | Peoplesoft | 8.41 | 8.41 |
Peopletools | Peoplesoft | 8.16 | 8.16 |
Peopletools | Peoplesoft | 8.13 | 8.13 |
Peopletools | Peoplesoft | 8.14 | 8.14 |
Peopletools | Peoplesoft | 8.40 | 8.40 |
Peopletools | Peoplesoft | 8.18 | 8.18 |
Peopletools | Peoplesoft | 8.11 | 8.11 |
Peopletools | Peoplesoft | 8.20 | 8.20 |
Peopletools | Peoplesoft | 8.4 | 8.4 |