SAP Solution Manager (Diagnostic Agent) - version 7.20, allows an authenticated attacker on Windows system to access a file containing sensitive data which can be used to access a configuration file which contains credentials to access other system files. Successful exploitation can make the attacker access files and systems for which he/she is not authorized.
2022-12-12T22:15:10.250
2024-11-21T07:22:56.140
Modified
CVSSv3.1: 6.0 (MEDIUM)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | sap | solution_manager | 7.20 | Yes |
Operating System | microsoft | windows | - | No |