Логотип exploitDog
bind:CVE-2026-0493
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2026-0493

Количество 3

Количество 3

nvd логотип

CVE-2026-0493

23 дня назад

Due to a Cross-Site Request Forgery (CSRF) vulnerability in SAP Fiori App Intercompany Balance Reconciliation an attacker could execute state?changing actions using an inappropriate request type, this deviation from expected request semantics may allow an attacker to trigger unintended actions on behalf of an authenticated user causing low impact on integrity of the system. This has no impact on confidentiality and availability.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-x2gq-6c9p-44p8

23 дня назад

Due to a Cross-Site Request Forgery (CSRF) vulnerability in SAP Fiori App Intercompany Balance Reconciliation an attacker could execute state?changing actions using an inappropriate request type, this deviation from expected request semantics may allow an attacker to trigger unintended actions on behalf of an authenticated user causing low impact on integrity of the system. This has no impact on confidentiality and availability.

CVSS3: 4.3
EPSS: Низкий
fstec логотип

BDU:2026-00764

24 дня назад

Уязвимость веб-приложения SAP Fiori App, связанная с подделкой межсайтовых запросов, позволяющая нарушителю оказать воздействие на целостность защищаемой информации

CVSS3: 4.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2026-0493

Due to a Cross-Site Request Forgery (CSRF) vulnerability in SAP Fiori App Intercompany Balance Reconciliation an attacker could execute state?changing actions using an inappropriate request type, this deviation from expected request semantics may allow an attacker to trigger unintended actions on behalf of an authenticated user causing low impact on integrity of the system. This has no impact on confidentiality and availability.

CVSS3: 4.3
0%
Низкий
23 дня назад
github логотип
GHSA-x2gq-6c9p-44p8

Due to a Cross-Site Request Forgery (CSRF) vulnerability in SAP Fiori App Intercompany Balance Reconciliation an attacker could execute state?changing actions using an inappropriate request type, this deviation from expected request semantics may allow an attacker to trigger unintended actions on behalf of an authenticated user causing low impact on integrity of the system. This has no impact on confidentiality and availability.

CVSS3: 4.3
0%
Низкий
23 дня назад
fstec логотип
BDU:2026-00764

Уязвимость веб-приложения SAP Fiori App, связанная с подделкой межсайтовых запросов, позволяющая нарушителю оказать воздействие на целостность защищаемой информации

CVSS3: 4.3
0%
Низкий
24 дня назад

Уязвимостей на страницу