CVE-2025-30014

SAP Capital Yield Tax Management has directory traversal vulnerability due to insufficient path validation. This could allow an attacker with low privileges to read files from directory which they don�t have access to, hence causing a high impact on confidentiality. Integrity and Availability are not affected.
Configurations

No configuration.

History

08 Apr 2025, 18:13

Type Values Removed Values Added
Summary
  • (es) SAP Capital Yield Tax Management presenta una vulnerabilidad de directory traversal debido a una validación de ruta insuficiente. Esto podría permitir que un atacante con pocos privilegios lea archivos de un directorio al que no tiene acceso, lo que afecta gravemente la confidencialidad. La integridad y la disponibilidad no se ven afectadas.

08 Apr 2025, 08:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-04-08 08:15

Updated : 2025-04-08 18:13


NVD link : CVE-2025-30014

Mitre link : CVE-2025-30014

CVE.ORG link : CVE-2025-30014


JSON object : View

Products Affected

No product.

CWE
CWE-35

Path Traversal: '.../...//'