AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2019-0370

MEDIUM · CVSS 6.5 EPSS 0.72%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2019-10-08 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2019-0370
Severity
MEDIUM
CVSS
6.5
EPSS
0.72%

Original NVD Description

Due to missing input validation, SAP Financial Consolidation, before versions 10.0 and 10.1, enables an attacker to use crafted input to interfere with the structure of the surrounding query leading to XPath Injection.