PT-2024-1086 · Sap · Sap Gui Connector For Microsoft Edge
Published
2024-01-08
·
Updated
2024-08-31
·
CVE-2024-22125
CVSS v2.0
7.8
High
| Vector | AV:N/AC:L/Au:N/C:C/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
SAP GUI connector for Microsoft Edge version 1.0
Description
The issue allows an attacker to access highly sensitive information that would otherwise be restricted, causing a high impact on confidentiality. This is related to the disclosure of system data to an unauthorized area. Exploitation of the issue may allow a remote attacker to disclose protected information.
Recommendations
For SAP GUI connector for Microsoft Edge version 1.0, consider disabling the extension until a patch is available to prevent an attacker from accessing sensitive information. Restrict access to sensitive data and areas of the system to minimize the risk of exploitation.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Sap Gui Connector For Microsoft Edge