A malicious or compromised OData service could disclose sensitive authentication information and inject untrusted data into the application, which may leads to a high impact on confidentiality and lo…
Medium CVSS 5.9
Summary
A malicious or compromised OData service could disclose sensitive authentication information and inject untrusted data into the application, which may leads to a high impact on confidentiality and low impact on integrity and no impact on Availability.
In-depth triage
No in-depth report has been generated yet (DR-003 v2 AI pipeline is under construction).
Sources
- NVD DATABASE
Original Links
- https://github.com/SAP/python-pyodata/security/advisories/GHSA-hc5j-q32w-c25v
- https://url.sap/sapsecuritypatchday
Timeline
- nvd_ingest NVD