Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-x3vj-mjq2-xm62

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 9.3

Описание

The XS engine in SAP HANA allows remote attackers to spoof log entries in trace files and consequently cause a denial of service (disk consumption and process crash) via a crafted HTTP request, related to an unspecified debug function, aka SAP Security Note 2241978.

The XS engine in SAP HANA allows remote attackers to spoof log entries in trace files and consequently cause a denial of service (disk consumption and process crash) via a crafted HTTP request, related to an unspecified debug function, aka SAP Security Note 2241978.

EPSS

Процентиль: 80%
0.01328
Низкий

9.3 Critical

CVSS3

Дефекты

CWE-20

Связанные уязвимости

CVSS3: 9.3
nvd
около 10 лет назад

The XS engine in SAP HANA allows remote attackers to spoof log entries in trace files and consequently cause a denial of service (disk consumption and process crash) via a crafted HTTP request, related to an unspecified debug function, aka SAP Security Note 2241978.

fstec
около 10 лет назад

Уязвимость системы управления базами данных SAP HANA, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 80%
0.01328
Низкий

9.3 Critical

CVSS3

Дефекты

CWE-20