Self-Registration and Modify your own profile in User Admin Application of NetWeaver AS Java does not enforce proper security requirements for the content of the newly defined security answer. This can be leveraged by an attacker to cause profound impact on confidentiality and low impact on both integrity and availability.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: sap
Published: 2024-04-09T00:54:17.167Z
Updated: 2024-08-02T00:41:55.550Z
Reserved: 2024-02-27T06:26:16.787Z
Link: CVE-2024-27899
Vulnrichment
Updated: 2024-05-23T19:01:22.998Z
NVD
Status : Awaiting Analysis
Published: 2024-04-09T01:15:48.777
Modified: 2024-04-09T12:48:04.090
Link: CVE-2024-27899
Redhat
No data.