Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3wcw-m33p-8r99

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 4.7

Описание

Server Side Request Forgery (SSRF) vulnerability in SAP NetWeaver Knowledge Management Configuration Service, EPBC and EPBC2 from 7.00 to 7.02; KMC-BC 7.30, 7.31, 7.40 and 7.50, that allows an attacker to manipulate the vulnerable application to send crafted requests on behalf of the application.

Server Side Request Forgery (SSRF) vulnerability in SAP NetWeaver Knowledge Management Configuration Service, EPBC and EPBC2 from 7.00 to 7.02; KMC-BC 7.30, 7.31, 7.40 and 7.50, that allows an attacker to manipulate the vulnerable application to send crafted requests on behalf of the application.

EPSS

Процентиль: 61%
0.00409
Низкий

4.7 Medium

CVSS3

Дефекты

CWE-918

Связанные уязвимости

CVSS3: 4.7
nvd
около 8 лет назад

Server Side Request Forgery (SSRF) vulnerability in SAP NetWeaver Knowledge Management Configuration Service, EPBC and EPBC2 from 7.00 to 7.02; KMC-BC 7.30, 7.31, 7.40 and 7.50, that allows an attacker to manipulate the vulnerable application to send crafted requests on behalf of the application.

CVSS3: 6.6
fstec
почти 9 лет назад

Уязвимость программных компонентов Knowledge Management Configuration Service, EPBC и EPBC2 платформы SAP NetWeaver, позволяющая нарушителю осуществить управление приложением

EPSS

Процентиль: 61%
0.00409
Низкий

4.7 Medium

CVSS3

Дефекты

CWE-918