7.5

CVE-2018-2398

Under certain conditions SAP Business Client 6.5 allows an attacker to access information which would otherwise be restricted.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
SAPBusiness Client Version6.5 Update-
SAPBusiness Client Version6.5 Updatepatch_level1
SAPBusiness Client Version6.5 Updatepatch_level2
SAPBusiness Client Version6.5 Updatepatch_level3
SAPBusiness Client Version6.5 Updatepatch_level4
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.16% 0.339
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.5 3.9 3.6
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:P/I:N/A:N
cna@sap.com 6.7 1.5 4.7
CVSS:3.0/AV:L/AC:L/PR:L/UI:R/S:C/C:H/I:L/A:N