1 results (0.007 seconds)

CVSS: 5.0EPSS: 0%CPEs: 6EXPL: 0

13 Aug 2024 — SAP CRM ABAP (Insights Management) allows an authenticated attacker to enumerate HTTP endpoints in the internal network by specially crafting HTTP requests. On successful exploitation this can result in information disclosure. It has no impact on integrity and availability of the application. SAP CRM ABAP (Insights Management) allows an authenticated attacker to enumerate HTTP endpoints in the internal network by specially crafting HTTP requests. On successful exploitation this can result in information dis... • https://me.sap.com/notes/3487537 • CWE-918: Server-Side Request Forgery (SSRF) •