Логотип exploitDog
bind:CVE-2022-35294
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-35294

Количество 2

Количество 2

nvd логотип

CVE-2022-35294

больше 3 лет назад

An attacker with basic business user privileges could craft and upload a malicious file to SAP NetWeaver Application Server ABAP, which is then downloaded and viewed by other users resulting in a stored Cross-Site-Scripting attack. This could lead to information disclosure including stealing authentication information and impersonating the affected user.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-pgxh-rpr4-8mr8

больше 3 лет назад

An attacker with basic business user privileges could craft and upload a malicious file to SAP NetWeaver Application Server ABAP, which is then downloaded and viewed by other users resulting in a stored Cross-Site-Scripting attack. This could lead to information disclosure including stealing authentication information and impersonating the affected user.

CVSS3: 5.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-35294

An attacker with basic business user privileges could craft and upload a malicious file to SAP NetWeaver Application Server ABAP, which is then downloaded and viewed by other users resulting in a stored Cross-Site-Scripting attack. This could lead to information disclosure including stealing authentication information and impersonating the affected user.

CVSS3: 5.4
0%
Низкий
больше 3 лет назад
github логотип
GHSA-pgxh-rpr4-8mr8

An attacker with basic business user privileges could craft and upload a malicious file to SAP NetWeaver Application Server ABAP, which is then downloaded and viewed by other users resulting in a stored Cross-Site-Scripting attack. This could lead to information disclosure including stealing authentication information and impersonating the affected user.

CVSS3: 5.4
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу