Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hv7q-mjj7-m8vj

Опубликовано: 08 июл. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 5

Описание

SAP NetWeaver allows an authenticated non-administrative user to call the remote-enabled function module which could grants access to non-sensitive information about the SAP system and OS without requiring any specific knowledge or controlled conditions. This leads to a low impact on confidentiality with no effect on integrity or availability of the application.

SAP NetWeaver allows an authenticated non-administrative user to call the remote-enabled function module which could grants access to non-sensitive information about the SAP system and OS without requiring any specific knowledge or controlled conditions. This leads to a low impact on confidentiality with no effect on integrity or availability of the application.

EPSS

Процентиль: 11%
0.00036
Низкий

5 Medium

CVSS3

Дефекты

CWE-862

Связанные уязвимости

CVSS3: 5
nvd
7 месяцев назад

SAP NetWeaver allows an authenticated non-administrative user to call the remote-enabled function module which could grants access to non-sensitive information about the SAP system and OS without requiring any specific knowledge or controlled conditions. This leads to a low impact on confidentiality with no effect on integrity or availability of the application.

CVSS3: 5
fstec
7 месяцев назад

Уязвимость программной интеграционной платформы SAP NetWeaver, связанная с отсутствием авторизации, позволяющая нарушителю оказать воздействие на конфиденциальность защищаемой информации

EPSS

Процентиль: 11%
0.00036
Низкий

5 Medium

CVSS3

Дефекты

CWE-862