CVE-2021-38175 PUBLISHED CVSS 6.5 MEDIUM

SAP Analysis for Microsoft Office - version 2.8, allows an attacker with high privileges to read sensitive data over the network, and gather or change information in the current system without user interaction. The attack would not lead to an impact on the availability of the system, but there would be an impact on integrity and confidentiality.

EPSS 0.23% · 45.8th percentile

Risk Scores

CVSS v3.0
6.5
CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:N
EPSS Score
0.23%
45.8th percentile

Affected Products

VendorProductVersions
sapanalysis_for_microsoft_office2.8
SAP SESAP Analysis for Microsoft Office< 2.8

Timeline

References

Open in Interactive Console →