CVE-2024-39594
Severity CVSS v4.0:
Pending analysis
Type:
CWE-79
Cross-Site Scripting (XSS)
Publication date:
09/07/2024
Last modified:
09/07/2024
Description
SAP Business Warehouse - Business Planning and<br />
Simulation application does not sufficiently encode user controlled inputs,<br />
resulting in Reflected Cross-Site Scripting (XSS) vulnerability. After<br />
successful exploitation, an attacker can cause low impact on the confidentiality<br />
and integrity of the application.
Impact
Base Score 3.x
6.10
Severity 3.x
MEDIUM