SAP NetWeaver AS for Java Vulnerability Allows Access to Sensitive Information
CVE-2024-45283
6MEDIUM
Key Information:
- Vendor
SAP
- Vendor
- CVE Published:
- 10 September 2024
What is CVE-2024-45283?
SAP NetWeaver AS for Java allows an authorized attacker to obtain sensitive information. The attacker could obtain the username and password when creating an RFC destination. After successful exploitation, an attacker can read the sensitive information but cannot modify or delete the data.
Affected Version(s)
SAP NetWeaver AS for Java (Destination Service) 7.50