cve,link,title,description,vendor,products,score,severity,epss,cisa,article,ransomware,exploited,poc,trended,trended_no_1,published,trended_score CVE-2024-39593,https://securityvulnerability.io/vulnerability/CVE-2024-39593,SAP Landscape Management Data Disclosure Vulnerability,"SAP Landscape Management allows an authenticated user to read confidential data disclosed by the REST Provider Definition response. Successful exploitation can cause high impact on confidentiality of the managed entities.",SAP,SAP Landscape Management,5.7,MEDIUM,0.0004900000058114529,false,false,false,false,,false,false,2024-07-09T03:51:46.533Z,0 CVE-2020-6236,https://securityvulnerability.io/vulnerability/CVE-2020-6236,,"SAP Landscape Management, version 3.0, and SAP Adaptive Extensions, version 1.0, allows an attacker with admin_group privileges to change ownership and permissions (including S-user ID bit s-bit) of arbitrary files remotely. This results in the possibility to execute these files as root user from a non-root context, leading to Privilege Escalation.",SAP,"SAP Landscape Management,SAP Adaptive Extensions",7.2,HIGH,0.0010400000028312206,false,false,false,false,,false,false,2020-04-14T18:38:43.000Z,0 CVE-2020-6191,https://securityvulnerability.io/vulnerability/CVE-2020-6191,,"SAP Landscape Management, version 3.0, allows an attacker with admin privileges to execute malicious executables with root privileges in SAP Host Agent via SAP Landscape Management due to Missing Input Validation.",SAP,SAP Landscape Management,7.2,HIGH,0.0010600000387057662,false,false,false,false,,false,false,2020-02-12T19:46:16.000Z,0 CVE-2020-6192,https://securityvulnerability.io/vulnerability/CVE-2020-6192,,"SAP Landscape Management, version 3.0, allows an attacker with admin privileges to execute malicious commands with root privileges in SAP Host Agent via SAP Landscape Management.",SAP,SAP Landscape Management,7.2,HIGH,0.0010600000387057662,false,false,false,false,,false,false,2020-02-12T19:45:29.000Z,0 CVE-2019-0380,https://securityvulnerability.io/vulnerability/CVE-2019-0380,,"Under certain conditions, SAP Landscape Management enterprise edition, before version 3.0, allows custom secure parameters’ default values to be part of the application logs leading to Information Disclosure.",SAP,SAP Landscape Management Enterprise Edition,4.9,MEDIUM,0.0006500000017695129,false,false,false,false,,false,false,2019-10-08T19:31:03.000Z,0 CVE-2019-0249,https://securityvulnerability.io/vulnerability/CVE-2019-0249,,Under certain conditions SAP Landscape Management (VCM 3.0) allows an attacker to access information which would otherwise be restricted.,SAP,SAP Landscape Management(vcm),7.5,HIGH,0.003819999983534217,false,false,false,false,,false,false,2019-01-08T20:00:00.000Z,0