Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xcpj-984r-9rcv

Опубликовано: 08 апр. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 5.3

Описание

SAP KMC WPC allows an unauthenticated attacker to remotely retrieve usernames by a simple parameter query which could expose sensitive information causing low impact on confidentiality of the application. This has no effect on integrity and availability.

SAP KMC WPC allows an unauthenticated attacker to remotely retrieve usernames by a simple parameter query which could expose sensitive information causing low impact on confidentiality of the application. This has no effect on integrity and availability.

EPSS

Процентиль: 24%
0.00318
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-862

Связанные уязвимости

CVSS3: 5.3
nvd
больше 1 года назад

SAP KMC WPC allows an unauthenticated attacker to remotely retrieve usernames by a simple parameter query which could expose sensitive information causing low impact on confidentiality of the application. This has no effect on integrity and availability.

CVSS3: 5.3
fstec
больше 1 года назад

Уязвимость бизнес-приложения для управления знаниями SAP KMC WPC, связанная с недостатками процедуры авторизации, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

EPSS

Процентиль: 24%
0.00318
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-862