Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Information Disclosure vulnerability in SAP KMC WPC
Vulnerability Description
SAP KMC WPC allows an unauthenticated attacker to remotely retrieve usernames by a simple parameter query which could expose sensitive information causing low impact on confidentiality of the application. This has no effect on integrity and availability.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Vulnerability Type
授权机制缺失
Vulnerability Title
SAP KMC WPC 安全漏洞
Vulnerability Description
SAP KMC WPC是德国思爱普(SAP)公司的一个企业内容管理与网页发布组件组合工具。 SAP KMC WPC存在安全漏洞,该漏洞源于允许未认证攻击者通过简单参数查询检索用户名,导致敏感信息泄露。
CVSS Information
N/A
Vulnerability Type
N/A