Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-27gw-jcg6-cwrf

Опубликовано: 09 сент. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 5

Описание

SAP NetWeaver (Service Data Download) allows an authenticated user to call a remote-enabled function module, which could grant access to information about the SAP system and operating system. This leads to a low impact on confidentiality, with no effect on the integrity and availability of the application

SAP NetWeaver (Service Data Download) allows an authenticated user to call a remote-enabled function module, which could grant access to information about the SAP system and operating system. This leads to a low impact on confidentiality, with no effect on the integrity and availability of the application

EPSS

Процентиль: 8%
0.00029
Низкий

5 Medium

CVSS3

Дефекты

CWE-862

Связанные уязвимости

CVSS3: 5
nvd
5 месяцев назад

SAP NetWeaver (Service Data Download) allows an authenticated user to call a remote-enabled function module, which could grant access to information about the SAP system and operating system. This leads to a low impact on confidentiality, with no effect on the integrity and availability of the application

CVSS3: 5
fstec
10 месяцев назад

Уязвимость программной интеграционной платформы SAP NetWeaver, связанная с недостатками процедуры авторизации, позволяющая нарушителю получить доступ на чтение системных данных

EPSS

Процентиль: 8%
0.00029
Низкий

5 Medium

CVSS3

Дефекты

CWE-862