Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qqv3-2v93-cwjw

Опубликовано: 09 апр. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 5.3

Описание

SAP NetWeaver application, due to insufficient input validation, allows an attacker to send a crafted request from a vulnerable web application targeting internal systems behind firewalls that are normally inaccessible to an attacker from the external network, resulting in a Server-Side Request Forgery vulnerability. Thus, having a low impact on confidentiality.

SAP NetWeaver application, due to insufficient input validation, allows an attacker to send a crafted request from a vulnerable web application targeting internal systems behind firewalls that are normally inaccessible to an attacker from the external network, resulting in a Server-Side Request Forgery vulnerability. Thus, having a low impact on confidentiality.

EPSS

Процентиль: 44%
0.0022
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-918

Связанные уязвимости

CVSS3: 5.3
nvd
почти 2 года назад

SAP NetWeaver application, due to insufficient input validation, allows an attacker to send a crafted request from a vulnerable web application targeting internal systems behind firewalls that are normally inaccessible to an attacker from the external network, resulting in a Server-Side Request Forgery vulnerability. Thus, having a low impact on confidentiality.

EPSS

Процентиль: 44%
0.0022
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-918