Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-wmgf-9m3j-mpmj

Опубликовано: 15 фев. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 7.3

Описание

DELL ESI (Enterprise Storage Integrator) for SAP LAMA, version 10.0, contains an improper access control vulnerability in EHAC component. A remote unauthenticated attacker could potentially exploit this vulnerability to gain unrestricted access to the SOAP APIs.

DELL ESI (Enterprise Storage Integrator) for SAP LAMA, version 10.0, contains an improper access control vulnerability in EHAC component. A remote unauthenticated attacker could potentially exploit this vulnerability to gain unrestricted access to the SOAP APIs.

EPSS

Процентиль: 68%
0.00578
Низкий

7.3 High

CVSS3

Дефекты

CWE-284

Связанные уязвимости

CVSS3: 7.3
nvd
почти 2 года назад

DELL ESI (Enterprise Storage Integrator) for SAP LAMA, version 10.0, contains an information disclosure vulnerability in EHAC component. An remote unauthenticated attacker could potentially exploit this vulnerability by eavesdropping the network traffic to gain admin level credentials.

EPSS

Процентиль: 68%
0.00578
Низкий

7.3 High

CVSS3

Дефекты

CWE-284