Описание
SAP Solution Manager and SAP Focused Run (update provided in WILY_INTRO_ENTERPRISE 9.7, 10.1, 10.5, 10.7), allows an unauthenticated attackers to bypass the authentication if the default passwords for Admin and Guest have not been changed by the administrator.This may impact the confidentiality of the service.
Ссылки
- Third Party Advisory
- Mailing ListThird Party Advisory
- Permissions RequiredVendor Advisory
- Vendor Advisory
- Third Party Advisory
- Mailing ListThird Party Advisory
- Permissions RequiredVendor Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:sap:focused_run:9.7:*:*:*:*:*:*:*
cpe:2.3:a:sap:focused_run:10.1:*:*:*:*:*:*:*
cpe:2.3:a:sap:focused_run:10.5:*:*:*:*:*:*:*
cpe:2.3:a:sap:focused_run:10.7:*:*:*:*:*:*:*
cpe:2.3:a:sap:solution_manager:9.7:*:*:*:*:*:*:*
cpe:2.3:a:sap:solution_manager:10.1:*:*:*:*:*:*:*
cpe:2.3:a:sap:solution_manager:10.5:*:*:*:*:*:*:*
cpe:2.3:a:sap:solution_manager:10.7:*:*:*:*:*:*:*
EPSS
Процентиль: 79%
0.01243
Низкий
7.5 High
CVSS3
5.9 Medium
CVSS3
4.3 Medium
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
больше 3 лет назад
SAP Solution Manager and SAP Focused Run (update provided in WILY_INTRO_ENTERPRISE 9.7, 10.1, 10.5, 10.7), allows an unauthenticated attackers to bypass the authentication if the default passwords for Admin and Guest have not been changed by the administrator.This may impact the confidentiality of the service.
EPSS
Процентиль: 79%
0.01243
Низкий
7.5 High
CVSS3
5.9 Medium
CVSS3
4.3 Medium
CVSS2
Дефекты
NVD-CWE-Other