CVE-2024-21737

CVSS V2 None CVSS V3 None
Description
In SAP Application Interface Framework File Adapter - version 702, a high privilege user can use a function module to traverse through various layers and execute OS commands directly. By this, such user can control the behaviour of the application. This leads to considerable impact on confidentiality, integrity and availability.
Overview
  • CVE ID
  • CVE-2024-21737
  • Assigner
  • sap
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2024-01-09T01:18:19.305Z
  • Last Modified Date
  • 2024-01-09T01:18:19.305Z
History
Created Old Value New Value Data Type Notes
2024-06-26 15:05:33 Added to TrackCVE