Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-q65p-q52g-jjgh

Опубликовано: 14 окт. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

SAP Print Service (SAPSprint) performs insufficient validation of path information provided by users. An unauthenticated attacker could traverse to the parent directory and over-write system files causing high impact on confidentiality integrity and availability of the application.

SAP Print Service (SAPSprint) performs insufficient validation of path information provided by users. An unauthenticated attacker could traverse to the parent directory and over-write system files causing high impact on confidentiality integrity and availability of the application.

EPSS

Процентиль: 40%
0.00185
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-35

Связанные уязвимости

CVSS3: 9.8
nvd
4 месяца назад

SAP Print Service (SAPSprint) performs insufficient validation of path information provided by users. An unauthenticated attacker could traverse to the parent directory and over-write system files causing high impact on confidentiality integrity and availability of the application.

EPSS

Процентиль: 40%
0.00185
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-35