Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8h49-4jw2-8wq6

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Under certain conditions the SAP Adaptive Server Enterprise, version 16.0, allows an attacker to access encrypted sensitive and confidential information through publicly readable installation log files leading to a compromise of the installed Cockpit. This compromise could enable the attacker to view, modify and/or make unavailable any data associated with the Cockpit, leading to Information Disclosure.

Under certain conditions the SAP Adaptive Server Enterprise, version 16.0, allows an attacker to access encrypted sensitive and confidential information through publicly readable installation log files leading to a compromise of the installed Cockpit. This compromise could enable the attacker to view, modify and/or make unavailable any data associated with the Cockpit, leading to Information Disclosure.

EPSS

Процентиль: 15%
0.00049
Низкий

Дефекты

CWE-200

Связанные уязвимости

CVSS3: 7.8
nvd
больше 5 лет назад

Under certain conditions the SAP Adaptive Server Enterprise, version 16.0, allows an attacker to access encrypted sensitive and confidential information through publicly readable installation log files leading to a compromise of the installed Cockpit. This compromise could enable the attacker to view, modify and/or make unavailable any data associated with the Cockpit, leading to Information Disclosure.

CVSS3: 5.8
fstec
больше 5 лет назад

Уязвимость компонента Cockpit СУБД Adaptive Server Enterprise, позволяющая нарушителю раскрыть защищаемую информацию

EPSS

Процентиль: 15%
0.00049
Низкий

Дефекты

CWE-200