CVE-2023-24522
Summary
| CVE | CVE-2023-24522 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2023-02-14 04:15:00 UTC |
| Updated | 2023-04-11 22:15:00 UTC |
| Description | Due to insufficient input sanitization, SAP NetWeaver AS ABAP (Business Server Pages) - versions 700, 701, 702, 731, 740, allows an unauthenticated user to alter the current session of the user by injecting the malicious code over the network and gain access to the unintended data. This may lead to a limited impact on the confidentiality and the integrity of the application. |
NVD Known Affected Configurations (CPE 2.3)
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 87533 SAP NetWeaver AS ABAP and ABAP Cross-Site Scripting (XSS) Vulnerability