Описание
SAP Solution Manager (JAVA stack), version - 7.20, allows an unauthenticated attacker to compromise the system because of missing authorization checks in the Upgrade Legacy Ports Service, this has an impact to the integrity and availability of the service.
Ссылки
- Permissions RequiredVendor Advisory
- Vendor Advisory
- Permissions RequiredVendor Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:sap:solution_manager:7.20:*:*:*:*:*:*:*
EPSS
Процентиль: 74%
0.00812
Низкий
10 Critical
CVSS3
10 Critical
CVSS3
6.4 Medium
CVSS2
Дефекты
CWE-306
Связанные уязвимости
github
больше 3 лет назад
SAP Solution Manager (JAVA stack), version - 7.20, allows an unauthenticated attacker to compromise the system because of missing authorization checks in the Upgrade Legacy Ports Service, this has an impact to the integrity and availability of the service.
EPSS
Процентиль: 74%
0.00812
Низкий
10 Critical
CVSS3
10 Critical
CVSS3
6.4 Medium
CVSS2
Дефекты
CWE-306