Vulnerabilities > CVE-2023-24526 - Unspecified vulnerability in SAP Netweaver Application Server Java 7.50
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
LOW Integrity impact
NONE Availability impact
NONE Summary
SAP NetWeaver Application Server Java for Classload Service - version 7.50, does not perform any authentication checks for functionalities that require user identity, resulting in escalation of privileges. This failure has a low impact on confidentiality of the data such that an unassigned user can read non-sensitive server data.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |