Denial of service (DOS) in SAP Cloud Connector
CVE-2023-49578

3.5LOW

Key Information:

Vendor
SAP
Vendor
CVE Published:
12 December 2023

Summary

SAP Cloud Connector - version 2.0, allows an authenticated user with low privilege to perform Denial of service attack from adjacent UI by sending a malicious request which leads to low impact on the availability and no impact on confidentiality or Integrity  of the application.

Affected Version(s)

SAP Cloud Connector 2.0

References

CVSS V3.1

Score:
3.5
Severity:
LOW
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.