CVE-2024-45277
CVSS V2 None
CVSS V3 None
Description
The SAP HANA Node.js client package versions from 2.0.0 before 2.21.31 is impacted by Prototype Pollution vulnerability allowing an attacker to add arbitrary properties to global object prototypes. This is due to improper user input sanitation when using the nestTables feature causing low impact on the availability of the application. This has no impact on Confidentiality and Integrity.
Overview
- CVE ID
- CVE-2024-45277
- Assigner
- sap
- Vulnerability Status
- PUBLISHED
- Published Version
- 2024-10-08T03:21:16.236Z
- Last Modified Date
- 2024-10-08T03:21:16.236Z
Weakness Enumerations
References
Reference URL | Reference Tags |
---|---|
https://me.sap.com/notes/3520100 | |
https://url.sap/sapsecuritypatchday |
Sources
Source Name | Source URL |
---|---|
NIST | https://nvd.nist.gov/vuln/detail/CVE-2024-45277 |
MITRE | https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-45277 |
History
Created | Old Value | New Value | Data Type | Notes |
---|---|---|---|---|
2024-10-08 13:26:12 | Added to TrackCVE |