Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jhwx-fm67-385p

Опубликовано: 11 июл. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 6.3

Описание

When creating a journal entry template in SAP S/4HANA (Manage Journal Entry Template) - versions S4CORE 104, 105, 106, 107, an attacker could intercept the save request and change the template, leading to an impact on confidentiality and integrity of the resource. Furthermore, a standard template could be deleted, hence making the resource temporarily unavailable.

When creating a journal entry template in SAP S/4HANA (Manage Journal Entry Template) - versions S4CORE 104, 105, 106, 107, an attacker could intercept the save request and change the template, leading to an impact on confidentiality and integrity of the resource. Furthermore, a standard template could be deleted, hence making the resource temporarily unavailable.

EPSS

Процентиль: 27%
0.00095
Низкий

6.3 Medium

CVSS3

Дефекты

CWE-284
CWE-732

Связанные уязвимости

CVSS3: 6.3
nvd
больше 2 лет назад

When creating a journal entry template in SAP S/4HANA (Manage Journal Entry Template) - versions S4CORE 104, 105, 106, 107, an attacker could intercept the save request and change the template, leading to an impact on confidentiality and integrity of the resource. Furthermore, a standard template could be deleted, hence making the resource temporarily unavailable.

CVSS3: 6.3
fstec
больше 2 лет назад

Уязвимость компонента Manage Journal Entry Template программной платформы SAP S/4HANA, позволяющая нарушителю получить доступ на чтение, изменение или удаление файлов

EPSS

Процентиль: 27%
0.00095
Низкий

6.3 Medium

CVSS3

Дефекты

CWE-284
CWE-732