Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Information Disclosure vulnerability in SAP GUI for Windows
Vulnerability Description
SAP GUI for Windows - version 7.70, 8.0, allows an unauthorized attacker to gain NTLM authentication information of a victim by tricking it into clicking a prepared shortcut file. Depending on the authorizations of the victim, the attacker can read and modify potentially sensitive information after successful exploitation.
CVSS Information
CVSS:3.1/AV:A/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:N
Vulnerability Type
信息暴露
Vulnerability Title
SAP GUI 信息泄露漏洞
Vulnerability Description
SAP GUI是德国思爱普(SAP)公司的一个应用软件。SAP系统的图形用户界面。 SAP GUI for Windows 7.70、8.0版本存在信息泄露漏洞。攻击者利用该漏洞通过诱使受害者单击准备好的快捷方式文件来获取受害者的 NTLM 身份验证信息。
CVSS Information
N/A
Vulnerability Type
N/A