Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-36919


In SAP Enable Now - versions WPB_MANAGER 1.0, WPB_MANAGER_CE 10, WPB_MANAGER_HANA 10, ENABLE_NOW_CONSUMP_DEL 1704, the Referrer-Policy response header is not implemented, allowing an unauthenticated attacker to obtain referrer details, resulting in information disclosure.


Published

2023-07-11T03:15:10.237

Last Modified

2024-11-21T08:10:55.387

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 5.3 (MEDIUM)

Weaknesses
  • Type: Primary
    CWE-213
  • Type: Secondary
    CWE-116

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application sap enable_now - Yes

References