An authenticated attacker can upload malicious
file to SAP Document Builder service. When the victim accesses this file, the
attacker is allowed to access, modify, or make the related information
unavailable in the victim’s browser.
file to SAP Document Builder service. When the victim accesses this file, the
attacker is allowed to access, modify, or make the related information
unavailable in the victim’s browser.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-34982 | An authenticated attacker can upload malicious file to SAP Document Builder service. When the victim accesses this file, the attacker is allowed to access, modify, or make the related information unavailable in the victim’s browser. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Fri, 09 Aug 2024 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Sap
Sap document Builder |
|
| CPEs | cpe:2.3:a:sap:document_builder:101:*:*:*:*:*:*:* cpe:2.3:a:sap:document_builder:103:*:*:*:*:*:*:* cpe:2.3:a:sap:document_builder:104:*:*:*:*:*:*:* cpe:2.3:a:sap:document_builder:105:*:*:*:*:*:*:* cpe:2.3:a:sap:document_builder:106:*:*:*:*:*:*:* cpe:2.3:a:sap:document_builder:107:*:*:*:*:*:*:* cpe:2.3:a:sap:document_builder:108:*:*:*:*:*:*:* cpe:2.3:a:sap:document_builder:731:*:*:*:*:*:*:* cpe:2.3:a:sap:document_builder:746:*:*:*:*:*:*:* cpe:2.3:a:sap:document_builder:747:*:*:*:*:*:*:* cpe:2.3:a:sap:document_builder:748:*:*:*:*:*:*:* cpe:2.3:a:sap:document_builder:s4core_100:*:*:*:*:*:*:* cpe:2.3:a:sap:document_builder:s4fnd_102:*:*:*:*:*:*:* cpe:2.3:a:sap:document_builder:sap_bs_fnd_702:*:*:*:*:*:*:* |
|
| Vendors & Products |
Sap
Sap document Builder |
Status: PUBLISHED
Assigner: sap
Published:
Updated: 2024-08-02T02:59:22.208Z
Reserved: 2024-05-07T05:46:11.656Z
Link: CVE-2024-34683
Updated: 2024-08-02T02:59:22.208Z
Status : Modified
Published: 2024-06-11T03:15:10.623
Modified: 2024-11-21T09:19:11.187
Link: CVE-2024-34683
No data.
OpenCVE Enrichment
No data.
EUVD