Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-pj5v-58w8-jqm8

Опубликовано: 11 авг. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 3.8

Описание

SAP Advanced Planning and Optimization (Model Mix Planning) contains a hardcoded credential within the source code of the application to perform authorization check to access certain functionalities in the application. An attacker with high privileges could leverage this hardcoded credential to bypass authorization and delete specific planning-related restrictions in the application. Successful exploitation could result in a low impact on confidentiality and integrity, with no impact on availability of the application.

SAP Advanced Planning and Optimization (Model Mix Planning) contains a hardcoded credential within the source code of the application to perform authorization check to access certain functionalities in the application. An attacker with high privileges could leverage this hardcoded credential to bypass authorization and delete specific planning-related restrictions in the application. Successful exploitation could result in a low impact on confidentiality and integrity, with no impact on availability of the application.

EPSS

Процентиль: 7%
0.00172
Низкий

3.8 Low

CVSS3

Дефекты

CWE-798

Связанные уязвимости

CVSS3: 3.8
nvd
23 дня назад

SAP Advanced Planning and Optimization (Model Mix Planning) contains a hardcoded credential within the source code of the application to perform authorization check to access certain functionalities in the application. An attacker with high privileges could leverage this hardcoded credential to bypass authorization and delete specific planning-related restrictions in the application. Successful exploitation could result in a low impact on confidentiality and integrity, with no impact on availability of the application.

EPSS

Процентиль: 7%
0.00172
Низкий

3.8 Low

CVSS3

Дефекты

CWE-798