CVE-2024-33002: SAP SE SAP s/4hana Document Service Handler For Dps
Medium severity, CVSS 6.1. EPSS: 0.3% chance of exploitation in the next 30 days.
Document Service handler (obsolete) in Data Provisioning Service does not sufficiently encode user-controlled inputs, resulting in Cross-Site Scripting (XSS) vulnerability with low impact on Confidentiality and Integrity of the application.
Affected products
- SAP SE SAP s/4hana Document Service Handler For Dps
Published 2024-05-14. Last modified 2026-06-17.