Due to missing authorization check in SAP NetWeaver AS Java (System Landscape Directory) an unauthorized user can read and modify some restricted global SLD configurations causing low impact on confidentiality and integrity of the application.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-39577 | Due to missing authorization check in SAP NetWeaver AS Java (System Landscape Directory) an unauthorized user can read and modify some restricted global SLD configurations causing low impact on confidentiality and integrity of the application. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Tue, 12 Nov 2024 02:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Sap
Sap netweaver System Landscape Directory |
|
| CPEs | cpe:2.3:a:sap:netweaver_system_landscape_directory:7.5:*:*:*:*:*:*:* | |
| Vendors & Products |
Sap
Sap netweaver System Landscape Directory |
|
| Metrics |
ssvc
|
Tue, 12 Nov 2024 00:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Due to missing authorization check in SAP NetWeaver AS Java (System Landscape Directory) an unauthorized user can read and modify some restricted global SLD configurations causing low impact on confidentiality and integrity of the application. | |
| Title | Missing Authorization check in SAP NetWeaver AS Java (System Landscape Directory) | |
| Weaknesses | CWE-862 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: sap
Published:
Updated: 2024-11-12T01:35:06.199Z
Reserved: 2024-07-31T04:09:36.223Z
Link: CVE-2024-42372
Updated: 2024-11-12T01:35:02.238Z
Status : Deferred
Published: 2024-11-12T01:15:03.940
Modified: 2026-04-15T00:35:42.020
Link: CVE-2024-42372
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD