CVE Published: 10/09/2024 |
CVE Updated: 10/09/2024 |
CVE Year: 2024 Source: sap |
Vendor: SAP_SE |
Product: SAP NetWeaver Application Server for ABAP and ABAP Platform Status : PUBLISHED
CVE-2024-44114 Description
SAP NetWeaver Application Server for ABAP and ABAP Platform allow users with high privileges to execute a program that reveals data over the network. This results in a minimal impact on confidentiality of the application.
Metrics
CVSS Version: 3.1 |
Base Score: 2 LOW Vector: CVSS:3.1/AV:N/AC:H/PR:H/UI:R/S:U/C:L/I:N/A:N
l➤ Exploitability Metrics: Attack Vector (AV)* NETWORK Attack Complexity (AC)* HIGH Privileges Required (PR)* HIGH User Interaction (UI)* REQUIRED Scope (S)* UNCHANGED