Security Advisory

CVE-2024-41728

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-09-10 04:00:56
Last updated 2024-09-10 13:26:14
Assigner sap
State PUBLISHED

Description

Due to missing authorization check, SAP NetWeaver Application Server for ABAP and ABAP Platform allows an attacker logged in as a developer to read objects contained in a package. This causes an impact on confidentiality, as this attacker would otherwise not have access to view these objects.