Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-33fg-v3g6-559q

Опубликовано: 13 июл. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 5.4

Описание

Due to insufficient input validation, SAP Business Objects - version 420, allows an authenticated attacker to submit a malicious request through an allowed operation. On successful exploitation, an attacker can view or modify information causing a limited impact on confidentiality and integrity of the application.

Due to insufficient input validation, SAP Business Objects - version 420, allows an authenticated attacker to submit a malicious request through an allowed operation. On successful exploitation, an attacker can view or modify information causing a limited impact on confidentiality and integrity of the application.

EPSS

Процентиль: 30%
0.00109
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-345

Связанные уязвимости

CVSS3: 5.4
nvd
больше 3 лет назад

Due to insufficient input validation, SAP Business Objects - version 420, allows an authenticated attacker to submit a malicious request through an allowed operation. On successful exploitation, an attacker can view or modify information causing a limited impact on confidentiality and integrity of the application.

CVSS3: 5.4
fstec
больше 3 лет назад

Уязвимость платформы бизнес-аналитики SAP Business Objects Business Intelligence Platform, связанная с недостаточной проверкой подлинности данных, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

EPSS

Процентиль: 30%
0.00109
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-345