Loading HuntDB...

GHSA-9r5m-ww6m-rgw3

GitHub Security Advisory

⚠ Unreviewed LOW Has CVE

Advisory Details

Due to missing verification of file type or
content, SAP Enable Now allows an authenticated attacker to upload arbitrary
files. These files include executables which might be downloaded and executed
by the user which could host malware. On successful exploitation an attacker
can cause limited impact on confidentiality and Integrity of the application.

Related CVEs

Key Information

GHSA ID
GHSA-9r5m-ww6m-rgw3
Published
July 9, 2024 6:30 AM
Last Modified
July 9, 2024 6:30 AM
CVSS Score
2.5 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: June 18, 2025 6:25 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.