Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2019-0399

Опубликовано: 11 дек. 2019
Источник: nvd
CVSS3: 6.5
CVSS2: 4
EPSS Низкий

Описание

SAP Portfolio and Project Management, before versions S4CORE 102, 103, EPPM 100 and CPRXRPM 500_702, 600_740, 610_740; unintentionally allows a user to discover accounting information of the Projects in Project dashboard, leading to Information Disclosure.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:sap:portfolio_and_project_management:cprxrpm_500_702:*:*:*:*:*:*:*
cpe:2.3:a:sap:portfolio_and_project_management:cprxrpm_600_740:*:*:*:*:*:*:*
cpe:2.3:a:sap:portfolio_and_project_management:cprxrpm_610_740:*:*:*:*:*:*:*
cpe:2.3:a:sap:portfolio_and_project_management:eppm_100:*:*:*:*:*:*:*
cpe:2.3:a:sap:portfolio_and_project_management:s4core_102:*:*:*:*:*:*:*
cpe:2.3:a:sap:portfolio_and_project_management:s4core_103:*:*:*:*:*:*:*

EPSS

Процентиль: 55%
0.00327
Низкий

6.5 Medium

CVSS3

4 Medium

CVSS2

Дефекты

NVD-CWE-noinfo

Связанные уязвимости

CVSS3: 6.5
github
больше 3 лет назад

SAP Portfolio and Project Management, before versions S4CORE 102, 103, EPPM 100 and CPRXRPM 500_702, 600_740, 610_740; unintentionally allows a user to discover accounting information of the Projects in Project dashboard, leading to Information Disclosure.

EPSS

Процентиль: 55%
0.00327
Низкий

6.5 Medium

CVSS3

4 Medium

CVSS2

Дефекты

NVD-CWE-noinfo