Loading HuntDB...

GHSA-4x4m-ghmx-6q9w

GitHub Security Advisory

⚠ Unreviewed MODERATE Has CVE

Advisory Details

In SAP Commerce, valid user accounts can be
identified during the customer registration and login processes. This allows a
potential attacker to learn if a given e-mail is used for an account, but does
not grant access to any customer data beyond this knowledge. The attacker must
already know the e-mail that they wish to test for. The impact on
confidentiality therefore is low and no impact to integrity or availability

Related CVEs

Key Information

GHSA ID
GHSA-4x4m-ghmx-6q9w
Published
August 13, 2024 6:30 AM
Last Modified
August 13, 2024 6:30 AM
CVSS Score
5.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: June 18, 2025 6:25 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.