Due to missing authorization check in SAP NetWeaver AS Java (System Landscape Directory) an unauthorized user can read and modify some restricted global SLD configurations causing low impact on confidentiality and integrity of the application.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-39577 | Due to missing authorization check in SAP NetWeaver AS Java (System Landscape Directory) an unauthorized user can read and modify some restricted global SLD configurations causing low impact on confidentiality and integrity of the application. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Tue, 12 Nov 2024 02:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Sap
Sap netweaver System Landscape Directory |
|
| CPEs | cpe:2.3:a:sap:netweaver_system_landscape_directory:7.5:*:*:*:*:*:*:* | |
| Vendors & Products |
Sap
Sap netweaver System Landscape Directory |
|
| Metrics |
ssvc
|
Tue, 12 Nov 2024 00:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Due to missing authorization check in SAP NetWeaver AS Java (System Landscape Directory) an unauthorized user can read and modify some restricted global SLD configurations causing low impact on confidentiality and integrity of the application. | |
| Title | Missing Authorization check in SAP NetWeaver AS Java (System Landscape Directory) | |
| Weaknesses | CWE-862 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: sap
Published:
Updated: 2024-11-12T01:35:06.199Z
Reserved: 2024-07-31T04:09:36.223Z
Link: CVE-2024-42372
Updated: 2024-11-12T01:35:02.238Z
Status : Awaiting Analysis
Published: 2024-11-12T01:15:03.940
Modified: 2024-11-12T13:55:21.227
Link: CVE-2024-42372
No data.
OpenCVE Enrichment
No data.
EUVD