Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-24315

Опубликовано: 09 июн. 2026
Источник: nvd
CVSS3: 4.2
EPSS Низкий

Описание

SAP Fiori Launchpad allows attackers to craft malicious URLs that triggers arbitrary service calls on the Fiori domain, this when opened by the user could compromise accounts by stealing user credentials. Successful exploitation requires adversaries to possess advanced knowledge of the system causing low impact on Confidentiality and Integrity. Availability of the system is no impacted.

EPSS

Процентиль: 7%
0.00174
Низкий

4.2 Medium

CVSS3

Дефекты

CWE-35

Связанные уязвимости

CVSS3: 4.2
github
около 2 месяцев назад

SAP Fiori Launchpad allows attackers to craft malicious URLs that triggers arbitrary service calls on the Fiori domain, this when opened by the user could compromise accounts by stealing user credentials. Successful exploitation requires adversaries to possess advanced knowledge of the system causing low impact on Confidentiality and Integrity. Availability of the system is no impacted.

CVSS3: 4.2
fstec
около 2 месяцев назад

Уязвимость панели запуска платформы проектирования бизнес-приложений SAP Fiori, позволяющая нарушителю получить несанкционированный доступ к учетной записи пользователя

EPSS

Процентиль: 7%
0.00174
Низкий

4.2 Medium

CVSS3

Дефекты

CWE-35