Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3wwx-rqjr-vjcc

Опубликовано: 08 окт. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 4.3

Описание

Fields which are in 'read only' state in Bank Statement Draft in Manage Bank Statements application, could be modified by MERGE method. The property of an OData entity representing assumably immutable method is not protected against external modifications leading to integrity violations. Confidentiality and Availability are not impacted.

Fields which are in 'read only' state in Bank Statement Draft in Manage Bank Statements application, could be modified by MERGE method. The property of an OData entity representing assumably immutable method is not protected against external modifications leading to integrity violations. Confidentiality and Availability are not impacted.

EPSS

Процентиль: 50%
0.00265
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-650

Связанные уязвимости

CVSS3: 4.3
nvd
больше 1 года назад

Fields which are in 'read only' state in Bank Statement Draft in Manage Bank Statements application, could be modified by MERGE method. The property of an OData entity representing assumably immutable method is not protected against external modifications leading to integrity violations. Confidentiality and Availability are not impacted.

CVSS3: 4.3
fstec
больше 1 года назад

Уязвимость компонента Manage Bank Statement Handler программной платформы SAP S/4HANA, позволяющая нарушителю получить доступ на изменение или удаление файлов

EPSS

Процентиль: 50%
0.00265
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-650