SAP NetWeaver AS Java (CAF - Guided Procedures)
allows an unauthenticated user to access non-sensitive information about the
server which would otherwise be restricted causing low impact on
confidentiality of the application.
References
| Link | Resource |
|---|---|
| https://me.sap.com/notes/3425571 | Permissions Required |
| https://support.sap.com/en/my-support/knowledge-base/security-notes-news.html | Vendor Advisory |
Configurations
History
06 Aug 2024, 16:40
| Type | Values Removed | Values Added |
|---|---|---|
| CPE | cpe:2.3:a:sap:netweaver_application_server_java:gp-core_7.5:*:*:*:*:*:*:* | |
| First Time |
Sap
Sap netweaver Application Server Java |
|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.3 |
| CWE | NVD-CWE-noinfo | |
| References | () https://support.sap.com/en/my-support/knowledge-base/security-notes-news.html - Vendor Advisory | |
| References | () https://me.sap.com/notes/3425571 - Permissions Required |
11 Jun 2024, 10:15
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
|
11 Jun 2024, 03:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2024-06-11 03:15
Updated : 2024-08-06 16:40
NVD link : CVE-2024-28164
Mitre link : CVE-2024-28164
JSON object : View
Products Affected
sap
- netweaver_application_server_java
CWE
