The vulnerability exists due to an unauthenticated information disclosure and data modification flaw in the Deployment Package component of PeopleSoft Enterprise PT PeopleTools. A remote attacker can exploit it over HTTP without credentials to extract or alter sensitive configuration data.