{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-09-30T12:44:39.517","vulnerabilities":[{"cve":{"id":"CVE-2024-47595","sourceIdentifier":"cna@sap.com","published":"2024-11-12T01:15:05.677","lastModified":"2026-06-17T07:57:21.970","vulnStatus":"Analyzed","cveTags":[],"descriptions":[{"lang":"en","value":"An attacker who gains local membership to sapsys group could replace local files usually protected by privileged access. On successful exploitation the attacker could cause high impact on confidentiality and integrity of the application."},{"lang":"es","value":"Un atacante que obtenga la membresía local del grupo sapsys podría reemplazar archivos locales que normalmente están protegidos por acceso privilegiado. Si logra explotar esta vulnerabilidad, el atacante podría causar un gran impacto en la confidencialidad e integridad de la aplicación."}],"affected":[{"source":"cna@sap.com","affectedData":[{"vendor":"SAP_SE","product":"SAP Host Agent","defaultStatus":"unaffected","versions":[{"version":"SAPHOSTAGENT 7.22","status":"affected"}]}]},{"source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","affectedData":[{"vendor":"sap","product":"host_agent","defaultStatus":"unknown","cpes":["cpe:2.3:a:sap:host_agent:7.22:*:*:*:*:*:*:*"],"versions":[{"version":"7.22","status":"affected"}]}]}],"metrics":{"cvssMetricV31":[{"source":"cna@sap.com","type":"Secondary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:N","baseScore":6.3,"baseSeverity":"MEDIUM","attackVector":"LOCAL","attackComplexity":"HIGH","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"NONE"},"exploitabilityScore":1.0,"impactScore":5.2},{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N","baseScore":7.1,"baseSeverity":"HIGH","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"NONE"},"exploitabilityScore":1.8,"impactScore":5.2}],"ssvcV203":[{"source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","ssvcData":{"timestamp":"2024-11-12T01:35:33.308354Z","id":"CVE-2024-47595","options":[{"exploitation":"none"},{"automatable":"no"},{"technicalImpact":"total"}],"role":"CISA Coordinator","version":"2.0.3"}}]},"weaknesses":[{"source":"cna@sap.com","type":"Secondary","description":[{"lang":"en","value":"CWE-266"}]},{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-noinfo"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:sap:host_agent:7.22:*:*:*:*:*:*:*","matchCriteriaId":"1E135017-1492-49F5-B3ED-F69D5476FB46"}]}]}],"references":[{"url":"https://me.sap.com/notes/3509619","source":"cna@sap.com","tags":["Permissions Required"]},{"url":"https://url.sap/sapsecuritypatchday","source":"cna@sap.com","tags":["Vendor Advisory"]}]}}]}