Vulnerabilities
Vulnerable Software
Sap:  >> Diagnostics Agent  >> 720  Security Vulnerabilities
Due to missing authentication and insufficient input validation, the OSCommand Bridge of SAP Diagnostics Agent - version 720, allows an attacker with deep knowledge of the system to execute scripts on all connected Diagnostics Agents. On successful exploitation, the attacker can completely compromise confidentiality, integrity and availability of the system.
CVSS Score
9.0
EPSS Score
0.073
Published
2023-04-11
Due to missing authentication and input sanitization of code the EventLogServiceCollector of SAP Diagnostics Agent - version 720, allows an attacker to execute malicious scripts on all connected Diagnostics Agents running on Windows. On successful exploitation, the attacker can completely compromise confidentiality, integrity and availability of the system.
CVSS Score
10.0
EPSS Score
0.003
Published
2023-04-11


Contact Us

Shodan ® - All rights reserved