CVE Published: 12/03/2024 |
CVE Updated: 28/09/2024 |
CVE Year: 2024 Source: sap |
Vendor: SAP_SE |
Product: NetWeaver (WSRM) Status : PUBLISHED
CVE-2024-25644 Description
Under certain conditions SAP NetWeaver WSRM - version 7.50, allows an attacker to access information which would otherwise be restricted, causing low impact on Confidentiality with no impact on Integrity and Availability of the application.
Metrics
CVSS Version: 3.1 |
Base Score: 5.3 MEDIUM Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N