The Create Single Payment application of SAP S/4HANA - versions 100, 101, 102, 103, 104, 105, 106, 107, 108, allows an attacker to upload the XML file as an attachment. When clicked on the XML file in the attachment section, the file gets opened in the browser to cause the entity loops to slow down the browser.
Metrics
Affected Vendors & Products
References
History
Wed, 25 Sep 2024 16:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
MITRE
Status: PUBLISHED
Assigner: sap
Published: 2023-09-12T01:59:03.570Z
Updated: 2024-09-25T15:33:02.395Z
Reserved: 2023-08-29T05:27:56.301Z
Link: CVE-2023-41369
Vulnrichment
Updated: 2024-08-02T19:01:34.245Z
NVD
Status : Analyzed
Published: 2023-09-12T02:15:12.983
Modified: 2023-09-14T02:11:35.203
Link: CVE-2023-41369
Redhat
No data.