CVE-2022-27658 Information
Jun 07, 2022
cve
Description
Under certain conditions SAP Innovation management - version 2.0 allows an attacker to access information which could lead to information gathering for further exploits and attacks.
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Reference
https://dam.sap.com/mac/embed/public/pdf/a/ucQrx6G.htm?rc=10 https://launchpad.support.sap.com/#/notes/3165856 https://sapbasisworld.com/sap-security-notes-summary-march-2022/
Attack Complexity
LOW
Privileges Required
NONE
User Interaction Required
NONE
Scope
NONE
Confidentiality Impact
UNCHANGED
Integrity Impact
HIGH
Availability Impact
NONE
Base Score
NONE
Base Severity
7.5
Share on: