Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-36j4-jjhr-3m5r

Опубликовано: 10 сент. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 6

Описание

SAP NetWeaver AS for Java allows an authorized attacker to obtain sensitive information. The attacker could obtain the username and password when creating an RFC destination. After successful exploitation, an attacker can read the sensitive information but cannot modify or delete the data.

SAP NetWeaver AS for Java allows an authorized attacker to obtain sensitive information. The attacker could obtain the username and password when creating an RFC destination. After successful exploitation, an attacker can read the sensitive information but cannot modify or delete the data.

EPSS

Процентиль: 10%
0.00036
Низкий

6 Medium

CVSS3

Дефекты

CWE-256

Связанные уязвимости

CVSS3: 6
nvd
больше 1 года назад

SAP NetWeaver AS for Java allows an authorized attacker to obtain sensitive information. The attacker could obtain the username and password when creating an RFC destination. After successful exploitation, an attacker can read the sensitive information but cannot modify or delete the data.

CVSS3: 6
fstec
больше 1 года назад

Уязвимость программных интеграционных платформ SAP NetWeaver AS Java, связанная с незашифрованным хранением критичной информации, позволяющая нарушителю раскрыть защищаемую информацию

EPSS

Процентиль: 10%
0.00036
Низкий

6 Medium

CVSS3

Дефекты

CWE-256