SAP Cloud Platform是德国思爱普(SAP)公司的一套开放式平台即服务(PaaS)式云平台。该平台用于构建和扩展个性化、协作式并支持移动的云应用程序。 SAP Cloud Platform 2.0版本中存在会话固定漏洞,该漏洞源于程序没有正确的管理会话。攻击者可利用该漏洞劫持任意会话,获取受影响软件的未授权访问权限。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| SAP SE | SAP Cloud Platform Connector | 2.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2018-2403 | SAP Disclosure Management 信息泄露漏洞 | |
| CVE-2018-2404 | SAP Disclosure Management 安全漏洞 | |
| CVE-2018-2405 | SAP Solution Manager Incident Management Work Center 跨站脚本漏洞 | |
| CVE-2018-2406 | SAP Crystal Reports Server OEM Edition 路径遍历漏洞 | |
| CVE-2018-2408 | SAP Business Objects 安全漏洞 | |
| CVE-2018-2410 | SAP Business One 跨站脚本漏洞 | |
| CVE-2018-2412 | SAP Disclosure Management 安全漏洞 | |
| CVE-2018-2413 | SAP Disclosure Management 安全漏洞 |
No comments yet