Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2021-27621

Опубликовано: 09 июн. 2021
Источник: nvd
CVSS3: 5.5
CVSS3: 4.9
CVSS2: 4
EPSS Низкий

Описание

Information Disclosure vulnerability in UserAdmin application in SAP NetWeaver Application Server for Java, versions - 7.11,7.20,7.30,7.31,7.40 and 7.50 allows attackers to access restricted information by entering malicious server name.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:sap:netweaver_application_server_for_java:7.11:*:*:*:*:*:*:*
cpe:2.3:a:sap:netweaver_application_server_for_java:7.20:*:*:*:*:*:*:*
cpe:2.3:a:sap:netweaver_application_server_for_java:7.30:*:*:*:*:*:*:*
cpe:2.3:a:sap:netweaver_application_server_for_java:7.31:*:*:*:*:*:*:*
cpe:2.3:a:sap:netweaver_application_server_for_java:7.40:*:*:*:*:*:*:*
cpe:2.3:a:sap:netweaver_application_server_for_java:7.50:*:*:*:*:*:*:*

EPSS

Процентиль: 44%
0.00221
Низкий

5.5 Medium

CVSS3

4.9 Medium

CVSS3

4 Medium

CVSS2

Дефекты

NVD-CWE-noinfo

Связанные уязвимости

CVSS3: 4.9
github
больше 3 лет назад

Information Disclosure vulnerability in UserAdmin application in SAP NetWeaver Application Server for Java, versions - 7.11,7.20,7.30,7.31,7.40 and 7.50 allows attackers to access restricted information by entering malicious server name.

EPSS

Процентиль: 44%
0.00221
Низкий

5.5 Medium

CVSS3

4.9 Medium

CVSS3

4 Medium

CVSS2

Дефекты

NVD-CWE-noinfo