PT-2024-1086 · Sap · Sap Gui Connector For Microsoft Edge

Published

2024-01-08

·

Updated

2024-08-31

·

CVE-2024-22125

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:C/I:N/A:N
Name of the Vulnerable Software and Affected Versions SAP GUI connector for Microsoft Edge version 1.0
Description The issue allows an attacker to access highly sensitive information that would otherwise be restricted, causing a high impact on confidentiality. This is related to the disclosure of system data to an unauthorized area. Exploitation of the issue may allow a remote attacker to disclose protected information.
Recommendations For SAP GUI connector for Microsoft Edge version 1.0, consider disabling the extension until a patch is available to prevent an attacker from accessing sensitive information. Restrict access to sensitive data and areas of the system to minimize the risk of exploitation.

Fix

Weakness Enumeration

Related Identifiers

BDU:2024-00347
CVE-2024-22125

Affected Products

Sap Gui Connector For Microsoft Edge