Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2023-0024

Опубликовано: 14 фев. 2023
Источник: nvd
CVSS3: 6.5
CVSS3: 5.4
EPSS Низкий

Описание

SAP Solution Manager (BSP Application) - version 720, allows an authenticated attacker to craft a malicious link, which when clicked by an unsuspecting user, can be used to read or modify some sensitive information or craft a payload which may restrict access to the desired resources, resulting in Cross-Site Scripting vulnerability.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:sap:solution_manager:720:*:*:*:*:*:*:*

EPSS

Процентиль: 54%
0.0031
Низкий

6.5 Medium

CVSS3

5.4 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 5.4
github
почти 3 года назад

SAP Solution Manager (BSP Application) - version 720, allows an authenticated attacker to craft a malicious link, which when clicked by an unsuspecting user, can be used to read or modify some sensitive information or craft a payload which may restrict access to the desired resources, resulting in Cross-Site Scripting vulnerability.

EPSS

Процентиль: 54%
0.0031
Низкий

6.5 Medium

CVSS3

5.4 Medium

CVSS3

Дефекты

CWE-79