SAP Business Warehouse - Business Planning and
Simulation application does not sufficiently encode user controlled inputs,
resulting in Reflected Cross-Site Scripting (XSS) vulnerability. After
successful exploitation, an attacker can cause low impact on the confidentiality
and integrity of the application.
                
            Metrics
Affected Vendors & Products
References
        History
                    Wed, 29 Oct 2025 14:45:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time appeared | Sap Sap business Warehouse Sap business Warehouse Virtual Comp | |
| CPEs | cpe:2.3:a:sap:business_warehouse:700:*:*:*:*:*:*:* cpe:2.3:a:sap:business_warehouse:701:*:*:*:*:*:*:* cpe:2.3:a:sap:business_warehouse:702:*:*:*:*:*:*:* cpe:2.3:a:sap:business_warehouse:730:*:*:*:*:*:*:* cpe:2.3:a:sap:business_warehouse:731:*:*:*:*:*:*:* cpe:2.3:a:sap:business_warehouse:740:*:*:*:*:*:*:* cpe:2.3:a:sap:business_warehouse:750:*:*:*:*:*:*:* cpe:2.3:a:sap:business_warehouse:751:*:*:*:*:*:*:* cpe:2.3:a:sap:business_warehouse:752:*:*:*:*:*:*:* cpe:2.3:a:sap:business_warehouse:753:*:*:*:*:*:*:* cpe:2.3:a:sap:business_warehouse:754:*:*:*:*:*:*:* cpe:2.3:a:sap:business_warehouse:755:*:*:*:*:*:*:* cpe:2.3:a:sap:business_warehouse:756:*:*:*:*:*:*:* cpe:2.3:a:sap:business_warehouse:757:*:*:*:*:*:*:* cpe:2.3:a:sap:business_warehouse:758:*:*:*:*:*:*:* cpe:2.3:a:sap:business_warehouse_virtual_comp:701:*:*:*:*:*:*:* | |
| Vendors & Products | Sap Sap business Warehouse Sap business Warehouse Virtual Comp | 
 MITRE
                        MITRE
                    Status: PUBLISHED
Assigner: sap
Published: 2024-07-09T04:10:40.727Z
Updated: 2024-08-02T04:26:16.083Z
Reserved: 2024-06-26T09:58:24.095Z
Link: CVE-2024-39594
 Vulnrichment
                        Vulnrichment
                    Updated: 2024-07-15T20:21:54.508Z
 NVD
                        NVD
                    Status : Analyzed
Published: 2024-07-09T05:15:12.300
Modified: 2025-10-29T14:39:47.920
Link: CVE-2024-39594
 Redhat
                        Redhat
                    No data.