{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-06-11T06:43:49.052","vulnerabilities":[{"cve":{"id":"CVE-2024-39591","sourceIdentifier":"cna@sap.com","published":"2024-08-13T05:15:13.347","lastModified":"2024-09-12T13:29:47.207","vulnStatus":"Analyzed","cveTags":[],"descriptions":[{"lang":"en","value":"SAP Document Builder does not perform necessary authorization checks for one of the function modules resulting in escalation of privileges causing low impact on confidentiality of the application."},{"lang":"es","value":"SAP Document Builder no realiza las comprobaciones de autorización necesarias para uno de los módulos de funciones, lo que da como resultado una escalada de privilegios que tiene un bajo impacto en la confidencialidad de la aplicación."}],"metrics":{"cvssMetricV31":[{"source":"cna@sap.com","type":"Secondary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N","baseScore":4.3,"baseSeverity":"MEDIUM","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"LOW","integrityImpact":"NONE","availabilityImpact":"NONE"},"exploitabilityScore":2.8,"impactScore":1.4},{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N","baseScore":5.3,"baseSeverity":"MEDIUM","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"LOW","integrityImpact":"NONE","availabilityImpact":"NONE"},"exploitabilityScore":3.9,"impactScore":1.4}]},"weaknesses":[{"source":"cna@sap.com","type":"Secondary","description":[{"lang":"en","value":"CWE-862"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:sap:document_builder:s4fnd_102:*:*:*:*:*:*:*","matchCriteriaId":"3273C74F-E5FE-47A2-B7F8-E76095A64359"},{"vulnerable":true,"criteria":"cpe:2.3:a:sap:document_builder:s4fnd_103:*:*:*:*:*:*:*","matchCriteriaId":"65DD3306-BD29-4E59-A0BE-7BEFB80E83A5"},{"vulnerable":true,"criteria":"cpe:2.3:a:sap:document_builder:s4fnd_104:*:*:*:*:*:*:*","matchCriteriaId":"49820851-29AD-4467-9CC9-6938197538A7"},{"vulnerable":true,"criteria":"cpe:2.3:a:sap:document_builder:s4fnd_105:*:*:*:*:*:*:*","matchCriteriaId":"6012CA9C-F45A-44FD-84A2-960D41638458"},{"vulnerable":true,"criteria":"cpe:2.3:a:sap:document_builder:s4fnd_106:*:*:*:*:*:*:*","matchCriteriaId":"25337ED2-24AC-4329-89FE-2ACC8F806721"},{"vulnerable":true,"criteria":"cpe:2.3:a:sap:document_builder:s4fnd_107:*:*:*:*:*:*:*","matchCriteriaId":"A48BA465-1906-4E24-BCC4-43677988EE56"},{"vulnerable":true,"criteria":"cpe:2.3:a:sap:document_builder:s4fnd_108:*:*:*:*:*:*:*","matchCriteriaId":"7562A2A3-BBA4-4FE7-800C-1D0A9FD750D8"},{"vulnerable":true,"criteria":"cpe:2.3:a:sap:document_builder:sap_bs_fnd_702:*:*:*:*:*:*:*","matchCriteriaId":"3A14342E-3477-457C-AF13-54AFFA9DE1C0"},{"vulnerable":true,"criteria":"cpe:2.3:a:sap:document_builder:sap_bs_fnd_731:*:*:*:*:*:*:*","matchCriteriaId":"A1FA8D4E-C6EB-4DD9-9729-0CE94FC1023D"},{"vulnerable":true,"criteria":"cpe:2.3:a:sap:document_builder:sap_bs_fnd_746:*:*:*:*:*:*:*","matchCriteriaId":"B2ED89F2-6C57-4393-9D7C-EF02C399F514"},{"vulnerable":true,"criteria":"cpe:2.3:a:sap:document_builder:sap_bs_fnd_747:*:*:*:*:*:*:*","matchCriteriaId":"8D738350-C117-4248-9334-2D1540986E34"},{"vulnerable":true,"criteria":"cpe:2.3:a:sap:document_builder:sap_bs_fnd_748:*:*:*:*:*:*:*","matchCriteriaId":"9242A4C0-3C2B-4877-A3CA-F17C2A036162"}]}]}],"references":[{"url":"https://me.sap.com/notes/3477423","source":"cna@sap.com","tags":["Permissions Required"]},{"url":"https://url.sap/sapsecuritypatchday","source":"cna@sap.com","tags":["Vendor Advisory"]}]}}]}