Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-42915

Опубликовано: 09 сент. 2025
Источник: nvd
CVSS3: 5.4
EPSS Низкий

Описание

Fiori app Manage Payment Blocks does not perform the necessary authorization checks, allowing an attacker with basic user privileges to abuse functionalities that should be restricted to specific user groups.This issue could impact both the confidentiality and integrity of the application without affecting the availability.

EPSS

Процентиль: 14%
0.00046
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-862

Связанные уязвимости

CVSS3: 5.4
github
5 месяцев назад

Fiori app Manage Payment Blocks does not perform the necessary authorization checks, allowing an attacker with basic user privileges to abuse functionalities that should be restricted to specific user groups.This issue could impact both the confidentiality and integrity of the application without affecting the availability.

EPSS

Процентиль: 14%
0.00046
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-862