ZeroHour

CVE-2024-39594

CVSS 3.1
6.1 medium
EPSS
<1%p17
Published
()
Modified
Description

SAP Business Warehouse - Business Planning and Simulation application does not sufficiently encode user controlled inputs, resulting in Reflected Cross-Site Scripting (XSS) vulnerability. After successful exploitation, an attacker can cause low impact on the confidentiality and integrity of the application.

Vendors
sap
Products
business warehouse, business warehouse virtual comp
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.