SAP Enterprise Financial Services是德国思爱普(SAP)公司的一套企业财务服务解决方案。 SAP Enterprise Financial Services中的‘EAFS_BCA_BUSOPR_SEPA’函数存在安全漏洞,该漏洞源于程序没有对已认证用户执行授权检测。攻击者可利用该漏洞提升权限。以下版本受到影响:SAP Enterprise Financial Services 6.05版本,6.06版本,6.16版本,6.17版本,6.18版本,8.0版本。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| SAP | SAP Enterprise Financial Services | = 6.05 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2018-2452 | SAP NetWeaver AS Java 跨站脚本漏洞 | |
| CVE-2018-2454 | SAP Enterprise Financial Services 安全漏洞 | |
| CVE-2018-2457 | SAP Adaptive Server Enterprise 信息泄露漏洞 | |
| CVE-2018-2458 | SAP Business One 信息泄露漏洞 | |
| CVE-2018-2459 | SAP Mobile Platform Offline OData application 安全漏洞 | |
| CVE-2018-2460 | SAP Business One Android Application 安全漏洞 | |
| CVE-2018-2461 | SAP HCM Fiori People Profile GBX01 HR 安全漏洞 | |
| CVE-2018-2462 | SAP NetWeaver BI 安全漏洞 | |
| CVE-2018-2463 | SAP Hybris Commerce Omni Commerce Connect API 代码问题漏洞 | |
| CVE-2018-2464 | SAP WebDynpro Java 跨站脚本漏洞 | |
| CVE-2018-2465 | SAP HANA 安全漏洞 |
No comments yet