Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2021-33694

SAP Cloud Connector, version - 2.0, does not sufficiently encode user-controlled inputs, allowing an attacker with Administrator rights, to include malicious codes that get stored in the database, and when accessed, could be executed in the application, resulting in Stored Cross-Site Scripting.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 37.2%
CVSS Severity
CVSS v3 Score 5.9
CVSS v2 Score 3.5
Products affected by CVE-2021-33694


Contact Us

Shodan ® - All rights reserved