Vulnerabilities > CVE-2024-41733 - Unspecified vulnerability in SAP Commerce Comcloud2211/Hycom2205
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
LOW Integrity impact
NONE Availability impact
NONE Summary
In SAP Commerce, valid user accounts can be identified during the customer registration and login processes. This allows a potential attacker to learn if a given e-mail is used for an account, but does not grant access to any customer data beyond this knowledge. The attacker must already know the e-mail that they wish to test for. The impact on confidentiality therefore is low and no impact to integrity or availability
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 2 |