SAP Diagnostics Agent 720

CPE Details

SAP Diagnostics Agent 720
720
2023-04-14
15h12 +00:00
2023-08-11
21h44 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:a:sap:diagnostics_agent:720:*:*:*:*:*:*:*

Informations

Vendor

sap

Product

diagnostics_agent

Version

720

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2023-27497 2023-04-11 02h37 +00:00 Due to missing authentication and input sanitization of code the EventLogServiceCollector of SAP Diagnostics Agent - version 720, allows an attacker to execute malicious scripts on all connected Diagnostics Agents running on Windows. On successful exploitation, the attacker can completely compromise confidentiality, integrity and availability of the system.
10
Critique
CVE-2023-27267 2023-04-11 02h36 +00:00 Due to missing authentication and insufficient input validation, the OSCommand Bridge of SAP Diagnostics Agent - version 720, allows an attacker with deep knowledge of the system to execute scripts on all connected Diagnostics Agents. On successful exploitation, the attacker can completely compromise confidentiality, integrity and availability of the system.
9
Critique