Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4q9v-f5hf-6j33

Опубликовано: 11 нояб. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 5.3

Описание

Due to information disclosure vulnerability in anonymous API provided by SAP Business One (SLD), an attacker with normal user access could gain access to unauthorized information. As a result, it has a low impact on the confidentiality of the application but no impact on the integrity and availability.

Due to information disclosure vulnerability in anonymous API provided by SAP Business One (SLD), an attacker with normal user access could gain access to unauthorized information. As a result, it has a low impact on the confidentiality of the application but no impact on the integrity and availability.

EPSS

Процентиль: 12%
0.0004
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-522

Связанные уязвимости

CVSS3: 5.3
nvd
3 месяца назад

Due to information disclosure vulnerability in anonymous API provided by SAP Business One (SLD), an attacker with normal user access could gain access to unauthorized information. As a result, it has a low impact on the confidentiality of the application but no impact on the integrity and availability.

CVSS3: 5.3
fstec
3 месяца назад

Уязвимость компонента Server Landscape Directory (SLD) системы управления ресурсами предприятия SAP Business One, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

EPSS

Процентиль: 12%
0.0004
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-522