CVE-2024-27898

CVSS V2 None CVSS V3 None
Description
SAP NetWeaver application, due to insufficient input validation, allows an attacker to send a crafted request from a vulnerable web application targeting internal systems behind firewalls that are normally inaccessible to an attacker from the external network, resulting in a Server-Side Request Forgery vulnerability. Thus, having a low impact on confidentiality.
Overview
  • CVE ID
  • CVE-2024-27898
  • Assigner
  • sap
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2024-04-09T00:52:54.390Z
  • Last Modified Date
  • 2024-04-09T00:52:54.390Z
History
Created Old Value New Value Data Type Notes
2024-06-26 01:48:58 Added to TrackCVE