Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-rpjf-7975-m344

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

SAP Host Agent, version 7.21, allows an unprivileged user to read the shared memory or write to the shared memory by sending request to the main SAPOSCOL process and receive responses that may contain data read with user root privileges e.g. size of any directory, system hardware and OS details, leading to Missing Authorization Check vulnerability.

SAP Host Agent, version 7.21, allows an unprivileged user to read the shared memory or write to the shared memory by sending request to the main SAPOSCOL process and receive responses that may contain data read with user root privileges e.g. size of any directory, system hardware and OS details, leading to Missing Authorization Check vulnerability.

EPSS

Процентиль: 48%
0.00249
Низкий

Связанные уязвимости

CVSS3: 6.5
nvd
почти 6 лет назад

SAP Host Agent, version 7.21, allows an unprivileged user to read the shared memory or write to the shared memory by sending request to the main SAPOSCOL process and receive responses that may contain data read with user root privileges e.g. size of any directory, system hardware and OS details, leading to Missing Authorization Check vulnerability.

EPSS

Процентиль: 48%
0.00249
Низкий