7.5
CVSSv3

CVE-2023-37486

Published: 08/08/2023 Updated: 15/08/2023
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

Under certain conditions SAP Commerce (OCC API) - versions HY_COM 2105, HY_COM 2205, COM_CLOUD 2211, endpoints allow an malicious user to access information which would otherwise be restricted. On successful exploitation there could be a high impact on confidentiality with no impact on integrity and availability of the application.

Vulnerable Product Search on Vulmon Subscribe to Product

sap commerce cloud 2211

sap commerce hycom 2205

sap commerce hycom 2105