Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9884-hhwq-42c3

Опубликовано: 13 дек. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6.1

Описание

In SAP Solution Manager (Enterprise Search) - versions 740, and 750, an unauthenticated attacker can generate a link that, if clicked by a logged-in user, can be redirected to a malicious page that could read or modify sensitive information, or expose the user to a phishing attack, with little impact on confidentiality and integrity.

In SAP Solution Manager (Enterprise Search) - versions 740, and 750, an unauthenticated attacker can generate a link that, if clicked by a logged-in user, can be redirected to a malicious page that could read or modify sensitive information, or expose the user to a phishing attack, with little impact on confidentiality and integrity.

EPSS

Процентиль: 70%
0.00657
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-601

Связанные уязвимости

CVSS3: 6.1
nvd
около 3 лет назад

In SAP Solution Manager (Enterprise Search) - versions 740, and 750, an unauthenticated attacker can generate a link that, if clicked by a logged-in user, can be redirected to a malicious page that could read or modify sensitive information, or expose the user to a phishing attack, with little impact on confidentiality and integrity.

EPSS

Процентиль: 70%
0.00657
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-601