CVE-2024-34683

An authenticated attacker can upload malicious file to SAP Document Builder service. When the victim accesses this file, the attacker is allowed to access, modify, or make the related information unavailable in the victim’s browser.
Configurations

No configuration.

History

No history.

Information

Published : 2024-06-11 03:15

Updated : 2024-06-11 13:54


NVD link : CVE-2024-34683

Mitre link : CVE-2024-34683

CVE.ORG link : CVE-2024-34683


JSON object : View

Products Affected

No product.

CWE
CWE-434

Unrestricted Upload of File with Dangerous Type