Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-43163 | SAP Commerce Cloud may accept an empty passphrase for user ID and passphrase authentication, allowing users to log into the system without a passphrase. |
Tue, 04 Mar 2025 03:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Sat, 28 Sep 2024 22:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-1390 |
Sat, 28 Sep 2024 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | SAP Commerce Cloud may accept an empty passphrase for user ID and passphrase authentication, allowing users to log into the system without a passphrase. | SAP Commerce Cloud may accept an empty passphrase for user ID and passphrase authentication, allowing users to log into the system without a passphrase. |
| Weaknesses | CWE-258 |
Status: PUBLISHED
Assigner: sap
Published:
Updated: 2025-02-27T21:10:56.748Z
Reserved: 2023-08-01T21:49:02.688Z
Link: CVE-2023-39439
Updated: 2024-08-02T18:10:20.432Z
Status : Modified
Published: 2023-08-08T01:15:19.793
Modified: 2024-11-21T08:15:25.790
Link: CVE-2023-39439
No data.
OpenCVE Enrichment
No data.
EUVD