CVE-2024-34683: SAP Document Builder
Medium severity, CVSS 6.5. EPSS: 0.2% chance of exploitation in the next 30 days.
An authenticated attacker can upload malicious file to SAP Document Builder service. When the victim accesses this file, the attacker is allowed to access, modify, or make the related information unavailable in the victim’s browser.
Affected products
- SAP Document Builder: version 101 only; version 103 only; version 104 only; version 105 only; version 106 only; version 107 only; …
Published 2024-06-11. Last modified 2026-06-17.