Directory Traversal vulnerability in SAP Capital Yield Tax Management
21Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackcvss 7.7epss 0.7%
exploitation probability
0.7%top 49% of all CVEs
observed exploitation
nono source reports it
SAP Capital Yield Tax Management has directory traversal vulnerability due to insufficient path validation. This could allow an attacker with low privileges to read files from directory which they don�t have access to, hence causing a high impact on confidentiality. Integrity and Availability are not affected.
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N
Affected products
SAP_SE · SAP Capital Yield Tax Management