Sage Group Sage X3是Sage Group公司的一个应用软件。针对成熟企业开发的企业资源规划产品。 Sage X3 存在跨站脚本漏洞,经过身份验证的用户可以将此 Web 应用程序组件的"First Name", "Last Name", "Email Address"字段传递给 XSS 字符串。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2020-7388 | 10.0 CRITICAL | Sage X3 AdxAdmin Unauthenticated Command Execution Bypass by Spoofing |
| CVE-2020-7389 | 5.5 MEDIUM | Sage X3 Syracuse Missing Authentication for Critical Function in Developer Environment |
| CVE-2020-7387 | 5.3 MEDIUM | Sage X3 AdxAdmin Exposure of Sensitive Information to an Unauthorized Actor |
No comments yet