VYPR

Service

by SAP

CVEs (1)

  • CVE-2024-30214MedApr 9, 2024
    risk 0.31cvss 4.8epss 0.00

    The application allows a high privilege attacker to append a malicious GET query parameter to Service invocations, which are reflected in the server response. Under certain circumstances, if the parameter contains a JavaScript, the script could be processed on client side.