Skip to main content

Vendor/product archive

sap / focused_run CVEs

Beta · best-effort

4 CVEs tagged to sap / focused_run0 Critical, 0 High, 3 Medium, 1 Low, 0 Unrated.

CVE-2022-27657

Published Apr 12, 2022

A highly privileged remote attacker, can gain unauthorized access to display contents of restricted directories by exploiting insufficient validation of path information in SAP Fo…

CVSS 2.7 · Low
Vendor/product tagsBeta · best-effort

CVE-2022-24399

Published Mar 10, 2022

The SAP Focused Run (Real User Monitoring) - versions 200, 300, REST service does not sufficiently sanitize the input name of the file using multipart/form-data, resulting in Cros…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-27609

Published Apr 13, 2021

SAP Focused RUN versions 200, 300, does not perform necessary authorization checks for an authenticated user, which allows a user to call the oData service and manipulate the acti…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-6369

Published Oct 20, 2020

SAP Solution Manager and SAP Focused Run (update provided in WILY_INTRO_ENTERPRISE 9.7, 10.1, 10.5, 10.7), allows an unauthenticated attackers to bypass the authentication if the…

CVSS 5.9 · Medium
evidence mentions
2
Buzz score
17.5
Vendor/product tagsBeta · best-effort
Showing 1-4 of 4 CVEsPage 1 of 1