Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qf6p-46w9-4mmp

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 9.9

Описание

PricewaterhouseCoopers (PwC) ACE-ABAP 8.10.304 for SAP Security allows remote authenticated users to conduct ABAP injection attacks and execute arbitrary code via (1) SAPGUI or (2) Internet Communication Framework (ICF) over HTTP or HTTPS, as demonstrated by WEBGUI or Report.

PricewaterhouseCoopers (PwC) ACE-ABAP 8.10.304 for SAP Security allows remote authenticated users to conduct ABAP injection attacks and execute arbitrary code via (1) SAPGUI or (2) Internet Communication Framework (ICF) over HTTP or HTTPS, as demonstrated by WEBGUI or Report.

EPSS

Процентиль: 91%
0.0726
Низкий

9.9 Critical

CVSS3

Дефекты

CWE-74

Связанные уязвимости

CVSS3: 9.9
nvd
около 9 лет назад

PricewaterhouseCoopers (PwC) ACE-ABAP 8.10.304 for SAP Security allows remote authenticated users to conduct ABAP injection attacks and execute arbitrary code via (1) SAPGUI or (2) Internet Communication Framework (ICF) over HTTP or HTTPS, as demonstrated by WEBGUI or Report.

EPSS

Процентиль: 91%
0.0726
Низкий

9.9 Critical

CVSS3

Дефекты

CWE-74