First published: Tue Jul 09 2024(Updated: )
Due to missing authorization checks, SAP Enable Now allows an author to escalate privileges to access information which should otherwise be restricted. On successful exploitation, the attacker can cause limited impact on confidentiality of the application.
Credit: cna@sap.com
Affected Software | Affected Version | How to fix |
---|---|---|
SAP Enable Now |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-39596 has a high severity due to its potential for privilege escalation and impact on confidentiality.
To fix CVE-2024-39596, apply the latest security patch provided by SAP for Enable Now.
CVE-2024-39596 affects users of SAP Enable Now who have not implemented the necessary security updates.
CVE-2024-39596 is a privilege escalation vulnerability due to missing authorization checks.
The potential impacts of CVE-2024-39596 include unauthorized access to restricted information within the application.