VYPR
Medium severity6.5NVD Advisory· Published Jun 23, 2024· Updated Apr 15, 2026

CVE-2024-39334

CVE-2024-39334

Description

MENDELSON AS4 before 2024 B376 has a client-side vulnerability when a trading partner provides prepared XML data. When a victim opens the details of this transaction in the client, files can be written to the computer on which the client process is running. (The server process is not affected.)

Affected products

1

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.