Local Privilege Escalation in SAP Host Agent
13Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackcvss 6.3epss 0.1%
exploitation probability
0.1%top 96% of all CVEs
observed exploitation
nono source reports it
An attacker who gains local membership to sapsys group could replace local files usually protected by privileged access. On successful exploitation the attacker could cause high impact on confidentiality and integrity of the application.
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:N
Affected products
SAP_SE · SAP Host Agent