Описание
SAP Startup Service, SAP KERNEL 7.45, 7.49, and 7.52, is missing an authentication check for functionalities that require user identity and cause consumption of file system storage.
Ссылки
- Third Party AdvisoryVDB Entry
- Vendor Advisory
- Permissions Required
- Third Party AdvisoryVDB Entry
- Vendor Advisory
- Permissions Required
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:o:sap:sap_kernel:7.45:*:*:*:*:*:*:*
cpe:2.3:o:sap:sap_kernel:7.49:*:*:*:*:*:*:*
cpe:2.3:o:sap:sap_kernel:7.52:*:*:*:*:*:*:*
EPSS
Процентиль: 82%
0.01672
Низкий
7.5 High
CVSS3
5 Medium
CVSS2
Дефекты
CWE-306
Связанные уязвимости
CVSS3: 7.5
github
больше 3 лет назад
SAP Startup Service, SAP KERNEL 7.45, 7.49, and 7.52, is missing an authentication check for functionalities that require user identity and cause consumption of file system storage.
EPSS
Процентиль: 82%
0.01672
Низкий
7.5 High
CVSS3
5 Medium
CVSS2
Дефекты
CWE-306