cve/2024/CVE-2024-39598.md
2025-09-29 21:09:30 +02:00

2.0 KiB

CVE-2024-39598

Description

SAP CRM (WebClient UI Framework) allows anauthenticated attacker to enumerate accessible HTTP endpoints in the internalnetwork by specially crafting HTTP requests. On successful exploitation thiscan result in information disclosure. It has no impact on integrity andavailability of the application.

POC

Reference

No PoCs from references.

Github