Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 3

Количество 3

nvd логотип

CVE-2026-24317

6 месяцев назад

SAP GUI for Windows allows DLL files to be loaded from arbitrary directories within the application. An unauthenticated attacker could exploit this vulnerability by persuading a victim to place a malicious DLL within one of these directories. The malicious command is executed in the victim user's context provided GuiXT is enabled. This vulnerability has a low impact on confidentiality, integrity, and availability.

CVSS3: 5
EPSS: Низкий
github логотип

GHSA-fwc5-f9r2-52h9

6 месяцев назад

SAP GUI for Windows allows DLL files to be loaded from arbitrary directories within the application. An unauthenticated attacker could exploit this vulnerability by persuading a victim to place a malicious DLL within one of these directories. The malicious command is executed in the victim user's context provided GuiXT is enabled. This vulnerability has a low impact on confidentiality, integrity, and availability.

CVSS3: 5
EPSS: Низкий
fstec логотип

BDU:2026-14596

6 месяцев назад

Уязвимость графического интерфейса пользователя SAP GUI для Windows, связанная с недостатками механизма вызовов системных библиотек, позволяющая нарушителю оказать воздействие на конфиденциальность, целостность и доступность защищаемой информации

CVSS3: 5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2026-24317

SAP GUI for Windows allows DLL files to be loaded from arbitrary directories within the application. An unauthenticated attacker could exploit this vulnerability by persuading a victim to place a malicious DLL within one of these directories. The malicious command is executed in the victim user's context provided GuiXT is enabled. This vulnerability has a low impact on confidentiality, integrity, and availability.

CVSS3: 5
0%
Низкий
6 месяцев назад
github логотип
GHSA-fwc5-f9r2-52h9

SAP GUI for Windows allows DLL files to be loaded from arbitrary directories within the application. An unauthenticated attacker could exploit this vulnerability by persuading a victim to place a malicious DLL within one of these directories. The malicious command is executed in the victim user's context provided GuiXT is enabled. This vulnerability has a low impact on confidentiality, integrity, and availability.

CVSS3: 5
0%
Низкий
6 месяцев назад
fstec логотип
BDU:2026-14596

Уязвимость графического интерфейса пользователя SAP GUI для Windows, связанная с недостатками механизма вызовов системных библиотек, позволяющая нарушителю оказать воздействие на конфиденциальность, целостность и доступность защищаемой информации

CVSS3: 5
0%
Низкий
6 месяцев назад

Уязвимостей на страницу