CVE-2024-39595
CVSS V2 None
CVSS V3 None
Description
SAP Business Warehouse - Business Planning and
Simulation application does not sufficiently encode user-controlled inputs,
resulting in Stored Cross-Site Scripting (XSS) vulnerability. This
vulnerability allows users to modify website content and on successful
exploitation, an attacker can cause low impact to the confidentiality and
integrity of the application.
Overview
- CVE ID
- CVE-2024-39595
- Assigner
- sap
- Vulnerability Status
- PUBLISHED
- Published Version
- 2024-07-09T04:13:49.560Z
- Last Modified Date
- 2024-07-09T04:13:49.560Z
Weakness Enumerations
References
Reference URL | Reference Tags |
---|---|
https://url.sap/sapsecuritypatchday | |
https://me.sap.com/notes/3482217 |
Sources
Source Name | Source URL |
---|---|
NIST | https://nvd.nist.gov/vuln/detail/CVE-2024-39595 |
MITRE | https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-39595 |
History
Created | Old Value | New Value | Data Type | Notes |
---|---|---|---|---|
2024-07-09 13:14:21 | Added to TrackCVE |