Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2022-41275

Опубликовано: 13 дек. 2022
Источник: nvd
CVSS3: 6.1
EPSS Низкий

Описание

In SAP Solution Manager (Enterprise Search) - versions 740, and 750, an unauthenticated attacker can generate a link that, if clicked by a logged-in user, can be redirected to a malicious page that could read or modify sensitive information, or expose the user to a phishing attack, with little impact on confidentiality and integrity.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:sap:solution_manager:740:*:*:*:*:*:*:*
cpe:2.3:a:sap:solution_manager:750:*:*:*:*:*:*:*

EPSS

Процентиль: 71%
0.00657
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-601
CWE-601

Связанные уязвимости

CVSS3: 6.1
github
около 3 лет назад

In SAP Solution Manager (Enterprise Search) - versions 740, and 750, an unauthenticated attacker can generate a link that, if clicked by a logged-in user, can be redirected to a malicious page that could read or modify sensitive information, or expose the user to a phishing attack, with little impact on confidentiality and integrity.

EPSS

Процентиль: 71%
0.00657
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-601
CWE-601