Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xwwh-3hfg-5c8w

Опубликовано: 13 янв. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 9.9

Описание

Due to insufficient input validation in SAP S/4HANA Private Cloud and On-Premise (Financials General Ledger), an authenticated user could execute crafted SQL queries to read, modify, and delete backend database data. This leads to a high impact on the confidentiality, integrity, and availability of the application.

Due to insufficient input validation in SAP S/4HANA Private Cloud and On-Premise (Financials General Ledger), an authenticated user could execute crafted SQL queries to read, modify, and delete backend database data. This leads to a high impact on the confidentiality, integrity, and availability of the application.

EPSS

Процентиль: 17%
0.00053
Низкий

9.9 Critical

CVSS3

Дефекты

CWE-89

Связанные уязвимости

CVSS3: 9.9
nvd
25 дней назад

Due to insufficient input validation in SAP S/4HANA Private Cloud and On-Premise (Financials General Ledger), an authenticated user could execute crafted SQL queries to read, modify, and delete backend database data. This leads to a high impact on the confidentiality, integrity, and availability of the application.

CVSS3: 9.9
fstec
25 дней назад

Уязвимость программной платформы SAP S/4HANA, связанная с непринятием мер по защите структуры запроса SQL, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

EPSS

Процентиль: 17%
0.00053
Низкий

9.9 Critical

CVSS3

Дефекты

CWE-89