CVE-2022-26104
CVE-2022-26104
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 0.7%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
08 Mar 2022Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
SAP Financial Consolidation - version 10.1, does not perform necessary authorization checks for updating homepage messages, resulting for an unauthorized user to alter the maintenance system message.
Affected products
SAP SE · SAP Financial ConsolidationWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →