Логотип exploitDog
bind:CVE-2025-42979
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-42979

Количество 3

Количество 3

nvd логотип

CVE-2025-42979

7 месяцев назад

The GuiXT application, which is integrated with SAP GUI for Windows, uses obfuscation algorithms instead of secure symmetric ciphers for storing the credentials of an RFC user on the client PC. This leads to a high impact on confidentiality because any attacker who gains access to the user hive of this user�s windows registry could recreate the original password. There is no impact on integrity or availability of the application

CVSS3: 5.6
EPSS: Низкий
github логотип

GHSA-3px8-gf2c-qqrh

7 месяцев назад

The GuiXT application, which is integrated with SAP GUI for Windows, uses obfuscation algorithms instead of secure symmetric ciphers for storing the credentials of an RFC user on the client PC. This leads to a high impact on confidentiality because any attacker who gains access to the user hive of this user�s windows registry could recreate the original password. There is no impact on integrity or availability of the application

CVSS3: 5.6
EPSS: Низкий
fstec логотип

BDU:2025-16215

7 месяцев назад

Уязвимость приложения GuiXT графического интерфейса пользователя SAP GUI для Windows, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 5.6
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-42979

The GuiXT application, which is integrated with SAP GUI for Windows, uses obfuscation algorithms instead of secure symmetric ciphers for storing the credentials of an RFC user on the client PC. This leads to a high impact on confidentiality because any attacker who gains access to the user hive of this user�s windows registry could recreate the original password. There is no impact on integrity or availability of the application

CVSS3: 5.6
0%
Низкий
7 месяцев назад
github логотип
GHSA-3px8-gf2c-qqrh

The GuiXT application, which is integrated with SAP GUI for Windows, uses obfuscation algorithms instead of secure symmetric ciphers for storing the credentials of an RFC user on the client PC. This leads to a high impact on confidentiality because any attacker who gains access to the user hive of this user�s windows registry could recreate the original password. There is no impact on integrity or availability of the application

CVSS3: 5.6
0%
Низкий
7 месяцев назад
fstec логотип
BDU:2025-16215

Уязвимость приложения GuiXT графического интерфейса пользователя SAP GUI для Windows, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 5.6
0%
Низкий
7 месяцев назад

Уязвимостей на страницу