Логотип exploitDog
bind:CVE-2025-27428
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-27428

Количество 3

Количество 3

nvd логотип

CVE-2025-27428

10 месяцев назад

Due to directory traversal vulnerability, an authorized attacker could gain access to some critical information by using RFC enabled function module. Upon successful exploitation, they could read files from any managed system connected to SAP Solution Manager, leading to high impact on confidentiality. There is no impact on integrity or availability.

CVSS3: 7.7
EPSS: Низкий
github логотип

GHSA-rc4p-33hg-59pr

10 месяцев назад

Due to directory traversal vulnerability, an authorized attacker could gain access to some critical information by using RFC enabled function module. Upon successful exploitation, they could read files from any managed system connected to SAP Solution Manager, leading to high impact on confidentiality. There is no impact on integrity or availability.

CVSS3: 7.7
EPSS: Низкий
fstec логотип

BDU:2025-04841

10 месяцев назад

Уязвимость компонента RFC Enabled Function Module программных интеграционных платформ SAP NetWeaver и ABAP Platform, связанная с недостатками процедуры авторизации, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 7.7
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-27428

Due to directory traversal vulnerability, an authorized attacker could gain access to some critical information by using RFC enabled function module. Upon successful exploitation, they could read files from any managed system connected to SAP Solution Manager, leading to high impact on confidentiality. There is no impact on integrity or availability.

CVSS3: 7.7
0%
Низкий
10 месяцев назад
github логотип
GHSA-rc4p-33hg-59pr

Due to directory traversal vulnerability, an authorized attacker could gain access to some critical information by using RFC enabled function module. Upon successful exploitation, they could read files from any managed system connected to SAP Solution Manager, leading to high impact on confidentiality. There is no impact on integrity or availability.

CVSS3: 7.7
0%
Низкий
10 месяцев назад
fstec логотип
BDU:2025-04841

Уязвимость компонента RFC Enabled Function Module программных интеграционных платформ SAP NetWeaver и ABAP Platform, связанная с недостатками процедуры авторизации, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 7.7
0%
Низкий
10 месяцев назад

Уязвимостей на страницу