cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2022-35293,https://securityvulnerability.io/vulnerability/CVE-2022-35293,Insecure Session Management Vulnerability in SAP Enable Now,"The vulnerability in SAP Enable Now arises from inadequate session management practices, enabling unauthenticated attackers to exploit the system. This flaw permits unauthorized users to access and manipulate user accounts, presenting potential risks to user data confidentiality and application integrity. Successful exploitation can lead to unauthorized viewing or modification of sensitive user information.",SAP,SAP Enable Now Manager,9.1,CRITICAL,0.0019199999514967203,false,,false,false,false,,,false,false,,2022-08-10T20:15:00.000Z,0 CVE-2021-27637,https://securityvulnerability.io/vulnerability/CVE-2021-27637,Information Disclosure Vulnerability in SAP Enable Now by SAP,"An information disclosure vulnerability exists in SAP Enable Now (SAP Workforce Performance Builder - Manager), allowing unauthorized access to restricted information under specific conditions. This can lead to inadvertent exposure of sensitive data, enabling attackers to gain insights into confidential operations and processes. Organizations using affected versions should assess their security posture and apply relevant protective measures to mitigate potential risks.",SAP,SAP Enable Now (SAP Workforce Performance Builder - Manager),5.9,MEDIUM,0.0007399999885819852,false,,false,false,false,,,false,false,,2021-06-09T13:30:33.000Z,0