Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9w69-cmrr-7x8x

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

SAP Business Objects Business Intelligence Platform (CMC), version 4.1, 4.2, shows cleartext password in the response, leading to Information Disclosure. It involves social engineering in order to gain access to system and If password is known, it would give administrative rights to the attacker to read/modify delete the data and rights within the system.

SAP Business Objects Business Intelligence Platform (CMC), version 4.1, 4.2, shows cleartext password in the response, leading to Information Disclosure. It involves social engineering in order to gain access to system and If password is known, it would give administrative rights to the attacker to read/modify delete the data and rights within the system.

EPSS

Процентиль: 41%
0.00194
Низкий

Дефекты

CWE-319

Связанные уязвимости

CVSS3: 9.8
nvd
почти 6 лет назад

SAP Business Objects Business Intelligence Platform (CMC), version 4.1, 4.2, shows cleartext password in the response, leading to Information Disclosure. It involves social engineering in order to gain access to system and If password is known, it would give administrative rights to the attacker to read/modify delete the data and rights within the system.

EPSS

Процентиль: 41%
0.00194
Низкий

Дефекты

CWE-319