CVE-2024-37177

Severity CVSS v4.0:
Pending analysis
Type:
CWE-79 Cross-Site Scripting (XSS)
Publication date:
11/06/2024
Last modified:
11/06/2024

Description

SAP Financial Consolidation allows data to enter<br /> a Web application through an untrusted source. These endpoints are exposed over<br /> the network and it allows the user to modify the content from the web site. On<br /> successful exploitation, an attacker can cause significant impact to<br /> confidentiality and integrity of the application.