CVE-2023-37486

CVSS V2 None CVSS V3 None
Description
Under certain conditions SAP Commerce (OCC API) - versions HY_COM 2105, HY_COM 2205, COM_CLOUD 2211, endpoints allow an attacker to access information which would otherwise be restricted. On successful exploitation there could be a high impact on confidentiality with no impact on integrity and availability of the application.
Overview
  • CVE ID
  • CVE-2023-37486
  • Assigner
  • sap
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2023-08-08T00:56:51.511Z
  • Last Modified Date
  • 2023-08-08T00:56:51.511Z
History
Created Old Value New Value Data Type Notes
2024-06-25 01:10:23 Added to TrackCVE