CVE-2024-34683 Information

Description

An authenticated attacker can upload malicious file to SAP Document Builder service. When the victim accesses this file the attacker is allowed to access modify or make the related information unavailable in the victim’s browser.

Reference

https://me.sap.com/notes/3459379 https://support.sap.com/en/my-support/knowledge-base/security-notes-news.html

Share on: