CVE Database · CVE-2024-47595
CVSS v3.1
6.3
EPSS
0.15%
Published
Nov 11, 2024
Modified
Nov 14, 2024
Public PoC / Exploit (1)
All weaponized →Links to public security research (Exploit-DB, Nuclei, Trickest, GitHub) for defensive use only.
Description
An attacker who gains local membership to sapsys group could replace local files usually protected by privileged access. On successful exploitation the attacker could cause high impact on confidentiality and integrity of the application.
CVSS Vector
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:NWeaknesses (CWE)
Affected Products (1)
References (2)