← Back

Infrabox

infrabox

Vendor: Sap • 2 CVEs

CVEs (2)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Sap
1Infrabox
Nov 21, 2024
Aug 10, 2021
N/A· v4
4.3 MEDIUM· v3
4.0 MEDIUM· v2
Due to improper input validation in InfraBox, logs can be modified by an authenticated user.
1Sap
1Infrabox
Nov 21, 2024
Jun 9, 2021
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
Due to improper input sanitization, specially crafted LDAP queries can be injected by an unauthenticated user. This could partially impact the confidentiality of the application.