Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7f5v-cx73-fff3

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 4.9

Описание

SAP NetWeaver AS JAVA (Enterprise Portal), versions - 7.10, 7.20, 7.30, 7.31, 7.40, 7.50 reveals sensitive information in one of their HTTP requests, an attacker can use this in conjunction with other attacks such as XSS to steal this information.

SAP NetWeaver AS JAVA (Enterprise Portal), versions - 7.10, 7.20, 7.30, 7.31, 7.40, 7.50 reveals sensitive information in one of their HTTP requests, an attacker can use this in conjunction with other attacks such as XSS to steal this information.

EPSS

Процентиль: 72%
0.00721
Низкий

4.9 Medium

CVSS3

Дефекты

CWE-200

Связанные уязвимости

CVSS3: 4.9
nvd
больше 4 лет назад

SAP NetWeaver AS JAVA (Enterprise Portal), versions - 7.10, 7.20, 7.30, 7.31, 7.40, 7.50 reveals sensitive information in one of their HTTP requests, an attacker can use this in conjunction with other attacks such as XSS to steal this information.

EPSS

Процентиль: 72%
0.00721
Низкий

4.9 Medium

CVSS3

Дефекты

CWE-200