Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hgfm-jj39-9pfh

Опубликовано: 10 июн. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 4.3

Описание

SAP Manage Processing Rules (For Bank Statement) allows an attacker with basic privileges to edit shared rules of any user by tampering the request parameter. Due to missing authorization check, the attacker can edit rules that should be restricted, compromising the integrity of the application.

SAP Manage Processing Rules (For Bank Statement) allows an attacker with basic privileges to edit shared rules of any user by tampering the request parameter. Due to missing authorization check, the attacker can edit rules that should be restricted, compromising the integrity of the application.

EPSS

Процентиль: 11%
0.00036
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-862

Связанные уязвимости

CVSS3: 4.3
nvd
8 месяцев назад

SAP Manage Processing Rules (For Bank Statement) allows an attacker with basic privileges to edit shared rules of any user by tampering the request parameter. Due to missing authorization check, the attacker can edit rules that should be restricted, compromising the integrity of the application.

CVSS3: 4.3
fstec
8 месяцев назад

Уязвимость компонента Manage Processing Rules (For Bank Statement) программной платформы SAP S/4HANA, позволяющая нарушителю оказать воздействие на целостность защищаемой информации

EPSS

Процентиль: 11%
0.00036
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-862