Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gv8x-5q42-g72w

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.7

Описание

It is possible for a malicious application or malware to execute JavaScript in a SAP Fiori application. This can include reading and writing of information and calling device specific JavaScript APIs in the application. SAP Fiori Client version 1.11.5 in Google Play store addresses these issues and users must update to that version.

It is possible for a malicious application or malware to execute JavaScript in a SAP Fiori application. This can include reading and writing of information and calling device specific JavaScript APIs in the application. SAP Fiori Client version 1.11.5 in Google Play store addresses these issues and users must update to that version.

EPSS

Процентиль: 42%
0.00205
Низкий

7.7 High

CVSS3

Связанные уязвимости

CVSS3: 7.7
nvd
около 7 лет назад

It is possible for a malicious application or malware to execute JavaScript in a SAP Fiori application. This can include reading and writing of information and calling device specific JavaScript APIs in the application. SAP Fiori Client version 1.11.5 in Google Play store addresses these issues and users must update to that version.

CVSS3: 7.7
fstec
около 8 лет назад

Уязвимость мобильной среды выполнения SAP Fiori Client, связанная с недостатками разграничения доступа, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации и выполнить произвольный JavaScript-код

EPSS

Процентиль: 42%
0.00205
Низкий

7.7 High

CVSS3