Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-5vh6-vprx-fjvm

Опубликовано: 06 июл. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 2.8

Описание

Vendor Master Hierarchy - versions SAP_APPL 500, SAP_APPL 600, SAP_APPL 602, SAP_APPL 603, SAP_APPL 604, SAP_APPL 605, SAP_APPL 606, SAP_APPL 616, SAP_APPL 617, SAP_APPL 618, S4CORE 100, does not perform necessary authorization checks for an authenticated user to access some of its function. This could lead to modification of data impacting the integrity of the system.

Vendor Master Hierarchy - versions SAP_APPL 500, SAP_APPL 600, SAP_APPL 602, SAP_APPL 603, SAP_APPL 604, SAP_APPL 605, SAP_APPL 606, SAP_APPL 616, SAP_APPL 617, SAP_APPL 618, S4CORE 100, does not perform necessary authorization checks for an authenticated user to access some of its function. This could lead to modification of data impacting the integrity of the system.

EPSS

Процентиль: 15%
0.00048
Низкий

2.8 Low

CVSS3

Дефекты

CWE-862

Связанные уязвимости

CVSS3: 2.8
nvd
больше 2 лет назад

Vendor Master Hierarchy - versions SAP_APPL 500, SAP_APPL 600, SAP_APPL 602, SAP_APPL 603, SAP_APPL 604, SAP_APPL 605, SAP_APPL 606, SAP_APPL 616, SAP_APPL 617, SAP_APPL 618, S4CORE 100, does not perform necessary authorization checks for an authenticated user to access some of its function. This could lead to modification of data impacting the integrity of the system.

EPSS

Процентиль: 15%
0.00048
Низкий

2.8 Low

CVSS3

Дефекты

CWE-862