---
id: CVE-2021-35606
title: >-
  Vulnerability in the PeopleSoft Enterprise CS Campus Community product of
  Oracle PeopleSoft (component: Notification Framework)
summary: >-
  Vulnerability in the PeopleSoft Enterprise CS Campus Community product of
  Oracle PeopleSoft (component: Notification Framework). Supported versions that
  are affected are 9.0 and 9.2. Easily exploitable vulnerability allows low
  privileged…
severity: medium
cvss: 5.7
cvssVector: 'CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N'
vendor: oracle
product: peoplesoft_enterprise_campus_software_campus_community
affected:
  - peoplesoft_enterprise_campus_software_campus_community = 9.0
  - peoplesoft_enterprise_campus_software_campus_community = 9.2
published: '2021-10-20'
updated: '2026-07-31'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2021-35606'
references:
  - url: 'https://www.oracle.com/security-alerts/cpuoct2021.html'
    label: secalert_us@oracle.com
  - url: 'https://www.oracle.com/security-alerts/cpuoct2021.html'
    label: af854a3a-2127-422b-91ae-364da2661108
tags:
  - nvd
epss: 0.00519
epssPercentile: 0.41606
ingestedAt: '2026-07-31T20:02:42.701Z'
---

## Overview

Vulnerability in the PeopleSoft Enterprise CS Campus Community product of Oracle PeopleSoft (component: Notification Framework). Supported versions that are affected are 9.0 and 9.2. Easily exploitable vulnerability allows low privileged attacker with access to the physical communication segment attached to the hardware where the PeopleSoft Enterprise CS Campus Community executes to compromise PeopleSoft Enterprise CS Campus Community. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all PeopleSoft Enterprise CS Campus Community accessible data. CVSS 3.1 Base Score 5.7 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N).

## Affected

- `peoplesoft_enterprise_campus_software_campus_community = 9.0`
- `peoplesoft_enterprise_campus_software_campus_community = 9.2`

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
