Логотип exploitDog
bind:CVE-2023-23851
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-23851

Количество 2

Количество 2

nvd логотип

CVE-2023-23851

почти 3 года назад

SAP Business Planning and Consolidation - versions 200, 300, allows an attacker with business authorization to upload any files (including web pages) without the proper file format validation. If other users visit the uploaded malicious web page, the attacker may perform actions on behalf of the users without their consent impacting the confidentiality and integrity of the system.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-rmf8-wm54-9xq4

почти 3 года назад

SAP Business Planning and Consolidation - versions 200, 300, allows an attacker with business authorization to upload any files (including web pages) without the proper file format validation. If other users visit the uploaded malicious web page, the attacker may perform actions on behalf of the users without their consent impacting the confidentiality and integrity of the system.

CVSS3: 5.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-23851

SAP Business Planning and Consolidation - versions 200, 300, allows an attacker with business authorization to upload any files (including web pages) without the proper file format validation. If other users visit the uploaded malicious web page, the attacker may perform actions on behalf of the users without their consent impacting the confidentiality and integrity of the system.

CVSS3: 5.4
0%
Низкий
почти 3 года назад
github логотип
GHSA-rmf8-wm54-9xq4

SAP Business Planning and Consolidation - versions 200, 300, allows an attacker with business authorization to upload any files (including web pages) without the proper file format validation. If other users visit the uploaded malicious web page, the attacker may perform actions on behalf of the users without their consent impacting the confidentiality and integrity of the system.

CVSS3: 5.4
0%
Низкий
почти 3 года назад

Уязвимостей на страницу