PT-2024-21063 · Sap · Sap Netweaver

Published

2024-03-11

·

Updated

2024-09-28

·

CVE-2024-25645

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions SAP NetWeaver (Enterprise Portal) version 7.50
Description The issue allows an attacker to access information that would otherwise be restricted, causing low impact on the confidentiality of the application, with no impact on the integrity and availability of the application.
Recommendations For version 7.50, update to a version that includes the fix for this issue, as the current version allows unauthorized access to restricted information. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Incorrect Permission

Weakness Enumeration

Related Identifiers

CVE-2024-25645

Affected Products

Sap Netweaver