CVE-2024-39593

SAP Landscape Management allows an authenticated user to read confidential data disclosed by the REST Provider Definition response. Successful exploitation can cause high impact on confidentiality of the managed entities.
References
Link Resource
https://me.sap.com/notes/3466801 Permissions Required
https://url.sap/sapsecuritypatchday Vendor Advisory
https://me.sap.com/notes/3466801 Permissions Required
https://url.sap/sapsecuritypatchday Vendor Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:sap:landscape_management:3.0:*:*:*:*:*:*:*

History

No history.

Information

Published : 2024-07-09 04:15

Updated : 2024-11-21 09:28


NVD link : CVE-2024-39593

Mitre link : CVE-2024-39593

CVE.ORG link : CVE-2024-39593


JSON object : View

Products Affected

sap

  • landscape_management
CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor

NVD-CWE-noinfo