Логотип exploitDog
bind:CVE-2025-30013
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-30013

Количество 3

Количество 3

nvd логотип

CVE-2025-30013

10 месяцев назад

SAP ERP BW Business Content is vulnerable to OS Command Injection through certain function modules. These function modules, when executed with elevated privileges, improperly handle user input, allowing attacker to inject arbitrary OS commands. This vulnerability allows the execution of unintended commands on the underlying system, posing a significant security risk to the confidentiality, integrity and availability of the application.

CVSS3: 6.7
EPSS: Низкий
github логотип

GHSA-55pg-m6v3-xwh9

10 месяцев назад

SAP ERP BW Business Content is vulnerable to OS Command Injection through certain function modules. These function modules, when executed with elevated privileges, improperly handle user input, allowing attacker to inject arbitrary OS commands. This vulnerability allows the execution of unintended commands on the underlying system, posing a significant security risk to the confidentiality, integrity and availability of the application.

CVSS3: 6.7
EPSS: Низкий
fstec логотип

BDU:2025-04844

10 месяцев назад

Уязвимость программного обеспечения для управления бизнес-процессами SAP ERP BW Business Content, связанная с неверным управлением генерацией кода, позволяющая нарушителю выполнить произвольный код

CVSS3: 6.7
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-30013

SAP ERP BW Business Content is vulnerable to OS Command Injection through certain function modules. These function modules, when executed with elevated privileges, improperly handle user input, allowing attacker to inject arbitrary OS commands. This vulnerability allows the execution of unintended commands on the underlying system, posing a significant security risk to the confidentiality, integrity and availability of the application.

CVSS3: 6.7
0%
Низкий
10 месяцев назад
github логотип
GHSA-55pg-m6v3-xwh9

SAP ERP BW Business Content is vulnerable to OS Command Injection through certain function modules. These function modules, when executed with elevated privileges, improperly handle user input, allowing attacker to inject arbitrary OS commands. This vulnerability allows the execution of unintended commands on the underlying system, posing a significant security risk to the confidentiality, integrity and availability of the application.

CVSS3: 6.7
0%
Низкий
10 месяцев назад
fstec логотип
BDU:2025-04844

Уязвимость программного обеспечения для управления бизнес-процессами SAP ERP BW Business Content, связанная с неверным управлением генерацией кода, позволяющая нарушителю выполнить произвольный код

CVSS3: 6.7
0%
Низкий
10 месяцев назад

Уязвимостей на страницу