| ID | CVE-2021-27618 | ||||||
| Sažetak | The Integration Builder Framework of SAP Process Integration versions - 7.10, 7.11, 7.20, 7.30, 7.31, 7.40, 7.50, does not check the file type extension of the file uploaded from local source. An attacker could craft a malicious file and upload it to the application, which could lead to denial of service and impact the availability of the application. | ||||||
| Reference | |||||||
| CVSS |
|
||||||
| Pristup |
|
||||||
| Impact |
|
||||||
| CVSS vektor | AV:N/AC:L/Au:S/C:N/I:N/A:P | ||||||
| Zadnje važnije ažuriranje | 27-08-2021 - 17:38 | ||||||
| Objavljeno | 11-05-2021 - 15:15 |

