mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-09 19:17:37 +02:00
731 B
731 B
CVE-2017-15295
Description
Xpress Server in SAP POS does not require authentication for read/write/delete file access. This is SAP Security Note 2520064.
POC
Reference
- https://erpscan.io/advisories/erpscan-17-033-sap-pos-missing-authentication-xpressserver/
- https://erpscan.io/advisories/erpscan-17-033-sap-pos-missing-authentication-xpressserver/
Github
No PoCs found on GitHub currently.