← Back

CVE-2024-41737

nvd nist
Published: Aug 13, 2024Modified: Jun 17, 2026

JSON object

Loading...
5.0
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:N/A:N
Exploitability: 3.1 / Impact: 1.4
Source: NVD

Description

SAP CRM ABAP (Insights Management) allows an authenticated attacker to enumerate HTTP endpoints in the internal network by specially crafting HTTP requests. On successful exploitation this can result in information disclosure. It has no impact on integrity and availability of the application.

Affected (6)

1 product
Crm Abap Insights Management
Configuration A
6 vulnerable
Vulnerable SoftwareAffected Versions
Sap
Version bbpcrm_700
Version bbpcrm_701
Version bbpcrm_702
Version bbpcrm_712
Version bbpcrm_713
Version bbpcrm_714

References (2)

Source: cna@sap.com
Permissions Required
Source: cna@sap.com
Vendor Advisory

Timeline

No history available yet.