CVE-2024-39593

SAP Landscape Management allows an authenticated user to read confidential data disclosed by the REST Provider Definition response. Successful exploitation can cause high impact on confidentiality of the managed entities.
References
Link Resource
https://url.sap/sapsecuritypatchday Vendor Advisory
https://me.sap.com/notes/3466801 Permissions Required
Configurations

Configuration 1 (hide)

cpe:2.3:a:sap:landscape_management:3.0:*:*:*:*:*:*:*

History

29 Aug 2024, 19:08

Type Values Removed Values Added
First Time Sap
Sap landscape Management
CWE CWE-200 NVD-CWE-noinfo
References () https://me.sap.com/notes/3466801 - () https://me.sap.com/notes/3466801 - Permissions Required
References () https://url.sap/sapsecuritypatchday - () https://url.sap/sapsecuritypatchday - Vendor Advisory
CPE cpe:2.3:a:sap:landscape_management:3.0:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.7

09 Jul 2024, 04:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-07-09 04:15

Updated : 2024-08-29 19:08


NVD link : CVE-2024-39593

Mitre link : CVE-2024-39593


JSON object : View

Products Affected

sap

  • landscape_management