ZeroHour

CVE-2024-34683

CVSS 3.1
6.5 medium
EPSS
<1%p15
Published
()
Modified
Description

An authenticated attacker can upload malicious file to SAP Document Builder service. When the victim accesses this file, the attacker is allowed to access, modify, or make the related information unavailable in the victim’s browser.

Vendors
sap
Products
document builder
Weakness
CWE-434
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L

In the news

No ingested article mentions this CVE yet.