Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mcjv-f7wr-jc6j

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 4.6

Описание

SAP Enterprise Financial Services (SAPSCORE 1.11, 1.12; S4CORE 1.01, 1.02; EA-FINSERV 6.04, 6.05, 6.06, 6.16, 6.17, 6.18, 8.0) does not perform necessary authorization checks for an authenticated user, resulting in escalation of privileges.

SAP Enterprise Financial Services (SAPSCORE 1.11, 1.12; S4CORE 1.01, 1.02; EA-FINSERV 6.04, 6.05, 6.06, 6.16, 6.17, 6.18, 8.0) does not perform necessary authorization checks for an authenticated user, resulting in escalation of privileges.

EPSS

Процентиль: 40%
0.00182
Низкий

4.6 Medium

CVSS3

Дефекты

CWE-862

Связанные уязвимости

CVSS3: 3.7
nvd
больше 7 лет назад

SAP Enterprise Financial Services (SAPSCORE 1.11, 1.12; S4CORE 1.01, 1.02; EA-FINSERV 6.04, 6.05, 6.06, 6.16, 6.17, 6.18, 8.0) does not perform necessary authorization checks for an authenticated user, resulting in escalation of privileges.

EPSS

Процентиль: 40%
0.00182
Низкий

4.6 Medium

CVSS3

Дефекты

CWE-862