Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-65cf-33g8-v8m6

Опубликовано: 08 июл. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 4.3

Описание

Due to missing authorization check, an attacker authenticated as a non-administrative user could call a remote-enabled function module. This could enable access to information normally restricted, resulting in low impact on confidentiality. There is no impact on integrity or availability.

Due to missing authorization check, an attacker authenticated as a non-administrative user could call a remote-enabled function module. This could enable access to information normally restricted, resulting in low impact on confidentiality. There is no impact on integrity or availability.

EPSS

Процентиль: 11%
0.00036
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-862

Связанные уязвимости

CVSS3: 4.3
nvd
7 месяцев назад

Due to missing authorization check, an attacker authenticated as a non-administrative user could call a remote-enabled function module. This could enable access to information normally restricted, resulting in low impact on confidentiality. There is no impact on integrity or availability.

CVSS3: 4.3
fstec
7 месяцев назад

Уязвимость инструмента Service Data Control Center (SDCCN) программных интеграционных платформ SAP NetWeaver и ABAP Platform, позволяющая нарушителю обойти ограничения безопасности и получить несанкционированный доступ к защищаемой информации

EPSS

Процентиль: 11%
0.00036
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-862