Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2023-65180
HistoryAug 15, 2023 - 12:00 a.m.

SAP NetWeaver Process Integration Access Control Error Vulnerability (CNVD-2023-65180)

2023-08-1500:00:00
China National Vulnerability Database
www.cnvd.org.cn
8
sap
netweaver
process integration
access control
vulnerability
authentication
checks
unauthorized access

EPSS

0.001

Percentile

37.1%

SAP NetWeaver Process Integration (PI) is an SAP enterprise application integration software from SAP, Germany, and is a component of the NetWeaver product group. The component is mainly used for the exchange of information between the internal system and the external. An access control error vulnerability exists in SAP NetWeaver Process Integration, which stems from not performing authentication checks for certain functions that require a user’s identity. An attacker could exploit the vulnerability to cause unauthorized access.

EPSS

0.001

Percentile

37.1%

Related for CNVD-2023-65180