SAP Capital Yield Tax Management has directory traversal vulnerability due to insufficient path validation. This could allow an attacker with low privileges to read files from directory which they don�t have access to, hence causing a high impact on confidentiality. Integrity and Availability are not affected.
Metrics
Affected Vendors & Products
References
History
Tue, 08 Apr 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 08 Apr 2025 07:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | SAP Capital Yield Tax Management has directory traversal vulnerability due to insufficient path validation. This could allow an attacker with low privileges to read files from directory which they don�t have access to, hence causing a high impact on confidentiality. Integrity and Availability are not affected. | |
| Title | Directory Traversal vulnerability in SAP Capital Yield Tax Management | |
| Weaknesses | CWE-35 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: sap
Published: 2025-04-08T07:14:25.929Z
Updated: 2025-04-08T13:23:38.179Z
Reserved: 2025-03-13T18:03:35.489Z
Link: CVE-2025-30014
Updated: 2025-04-08T13:23:33.677Z
Status : Awaiting Analysis
Published: 2025-04-08T08:15:17.177
Modified: 2025-04-08T18:13:53.347
Link: CVE-2025-30014
No data.