CVE-2024-33009: SAP Global Label Management
Medium severity, CVSS 4.2. EPSS: 0.3% chance of exploitation in the next 30 days.
SAP Global Label Management is vulnerable to SQL injection. On exploitation the attacker can use specially crafted inputs to modify database commands resulting in the retrieval of additional information persisted by the system. This could lead to low impact on Confidentiality and Integrity of the application.
Affected products
- SAP Global Label Management: version 605 only; version 606 only; version 616 only; version 617 only
- SAP SE SAP Global Label Management Glm: version 605 only; version 606 only; version 616 only; version 617 only
Published 2024-05-14. Last modified 2026-06-17.