Adobe Document Service allows an attacker with administrator privileges to send a crafted request from a vulnerable web application. It is usually used to target internal systems behind firewalls that are normally inaccessible to an attacker from the external network, resulting in a Server-Side Request Forgery vulnerability. On successful exploitation, the attacker can read or modify any file and/or make the entire system unavailable.
Metrics
Affected Vendors & Products
References
History
Tue, 10 Dec 2024 18:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Tue, 10 Dec 2024 00:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Adobe Document Service allows an attacker with administrator privileges to send a crafted request from a vulnerable web application. It is usually used to target internal systems behind firewalls that are normally inaccessible to an attacker from the external network, resulting in a Server-Side Request Forgery vulnerability. On successful exploitation, the attacker can read or modify any file and/or make the entire system unavailable. | |
Title | Multiple vulnerabilities in SAP NetWeaver AS for JAVA(Adobe Document Services) | |
Weaknesses | CWE-918 | |
References |
| |
Metrics |
cvssV3_1
|
MITRE
Status: PUBLISHED
Assigner: sap
Published: 2024-12-10T00:11:57.435Z
Updated: 2024-12-10T17:15:02.722Z
Reserved: 2024-09-27T20:05:49.543Z
Link: CVE-2024-47578
Vulnrichment
Updated: 2024-12-10T15:41:10.635Z
NVD
Status : Received
Published: 2024-12-10T01:15:05.660
Modified: 2024-12-10T01:15:05.660
Link: CVE-2024-47578
Redhat
No data.