Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4cwg-vmj9-q8qf

Опубликовано: 13 авг. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 4.3

Описание

SAP Document Builder does not perform necessary authorization checks for one of the function modules resulting in escalation of privileges causing low impact on confidentiality of the application.

SAP Document Builder does not perform necessary authorization checks for one of the function modules resulting in escalation of privileges causing low impact on confidentiality of the application.

EPSS

Процентиль: 18%
0.00264
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-862

Связанные уязвимости

CVSS3: 4.3
nvd
около 2 лет назад

SAP Document Builder does not perform necessary authorization checks for one of the function modules resulting in escalation of privileges causing low impact on confidentiality of the application.

CVSS3: 4.3
fstec
около 2 лет назад

Уязвимость средства для создания и управления документами SAP Document Builder, связанная с недостатками процедуры авторизации, позволяющая нарушителю повысить свои привилегии

EPSS

Процентиль: 18%
0.00264
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-862