GHSA-rpq2-3p69-p45w
GitHub Security Advisory
⚠ Unreviewed
HIGH
Has CVE
Advisory Details
Due to missing authentication check, SAP Business one License service API - version 10.0 allows an unauthenticated attacker to send malicious http requests over the network. On successful exploitation, an attacker can break the whole application making it inaccessible.
Related CVEs
Key Information
7.5
/10
Dataset
Last updated: June 25, 2025 8:46 PM
Data from GitHub Advisory Database. This information is provided for research and educational purposes.