Beschreibung
The SAP Gateway allows attackers to inject content into error messages, potentially leading to disclosure of request artefacts (e.g., regex patterns) and revealing underlying URI parsing logic. Leading to low impact on confidentiality. Integrity and availability are unaffected.
CVSS 4.3EPSS 0.258%Risiko 0.44
Quelle öffnen- Veröffentlicht
- 2026-05-26 18:16:51
- Betroffene Versionen
- unknown
- Typ
- Core software
- Zuletzt geändert
- 2026-07-24 11:10:00
- Vektor
- CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N