Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-39591


SAP Document Builder does not perform necessary authorization checks for one of the function modules resulting in escalation of privileges causing low impact on confidentiality of the application.


Published

2024-08-13T05:15:13.347

Last Modified

2024-09-12T13:29:47.207

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 4.3 (MEDIUM)

Weaknesses
  • Type: Secondary
    CWE-862

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application sap document_builder s4fnd_102 Yes
Application sap document_builder s4fnd_103 Yes
Application sap document_builder s4fnd_104 Yes
Application sap document_builder s4fnd_105 Yes
Application sap document_builder s4fnd_106 Yes
Application sap document_builder s4fnd_107 Yes
Application sap document_builder s4fnd_108 Yes
Application sap document_builder sap_bs_fnd_702 Yes
Application sap document_builder sap_bs_fnd_731 Yes
Application sap document_builder sap_bs_fnd_746 Yes
Application sap document_builder sap_bs_fnd_747 Yes
Application sap document_builder sap_bs_fnd_748 Yes

References