Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4wrv-c229-vc5p

Опубликовано: 08 апр. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

SAP Financial Consolidation allows an unauthenticated attacker to gain unauthorized access to the Admin account. The vulnerability arises due to improper authentication mechanisms, due to which there is high impact on the Confidentiality, Integrity & Availability of the application.

SAP Financial Consolidation allows an unauthenticated attacker to gain unauthorized access to the Admin account. The vulnerability arises due to improper authentication mechanisms, due to which there is high impact on the Confidentiality, Integrity & Availability of the application.

EPSS

Процентиль: 65%
0.00482
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-921

Связанные уязвимости

CVSS3: 9.8
nvd
10 месяцев назад

SAP Financial Consolidation allows an unauthenticated attacker to gain unauthorized access to the Admin account. The vulnerability arises due to improper authentication mechanisms, due to which there is high impact on the Confidentiality, Integrity & Availability of the application.

CVSS3: 9.8
fstec
10 месяцев назад

Уязвимость веб-приложения SAP Financial Consolidation, связанная с хранением конфиденциальной информации в механизме без контроля доступа, позволяющая нарушителю оказать влияние на конфиденциальность, целостность и доступность защищаемой информации

EPSS

Процентиль: 65%
0.00482
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-921