CVE-2024-39599

Due to a Protection Mechanism Failure in SAP NetWeaver Application Server for ABAP and ABAP Platform, a developer can bypass the configured malware scanner API because of a programming error. This leads to a low impact on the application's confidentiality, integrity, and availability.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:sap:sap_basis:700:*:*:*:*:*:*:*
cpe:2.3:a:sap:sap_basis:701:*:*:*:*:*:*:*
cpe:2.3:a:sap:sap_basis:702:*:*:*:*:*:*:*
cpe:2.3:a:sap:sap_basis:731:*:*:*:*:*:*:*
cpe:2.3:a:sap:sap_basis:740:*:*:*:*:*:*:*
cpe:2.3:a:sap:sap_basis:750:*:*:*:*:*:*:*
cpe:2.3:a:sap:sap_basis:751:*:*:*:*:*:*:*
cpe:2.3:a:sap:sap_basis:752:*:*:*:*:*:*:*
cpe:2.3:a:sap:sap_basis:753:*:*:*:*:*:*:*
cpe:2.3:a:sap:sap_basis:754:*:*:*:*:*:*:*
cpe:2.3:a:sap:sap_basis:755:*:*:*:*:*:*:*
cpe:2.3:a:sap:sap_basis:756:*:*:*:*:*:*:*
cpe:2.3:a:sap:sap_basis:757:*:*:*:*:*:*:*
cpe:2.3:a:sap:sap_basis:758:*:*:*:*:*:*:*
cpe:2.3:a:sap:sap_basis:795:*:*:*:*:*:*:*
cpe:2.3:a:sap:sap_basis:796:*:*:*:*:*:*:*

History

28 Oct 2025, 18:40

Type Values Removed Values Added
References () https://me.sap.com/notes/3456952 - () https://me.sap.com/notes/3456952 - Permissions Required
References () https://url.sap/sapsecuritypatchday - () https://url.sap/sapsecuritypatchday - Patch
CPE cpe:2.3:a:sap:sap_basis:754:*:*:*:*:*:*:*
cpe:2.3:a:sap:sap_basis:701:*:*:*:*:*:*:*
cpe:2.3:a:sap:sap_basis:751:*:*:*:*:*:*:*
cpe:2.3:a:sap:sap_basis:755:*:*:*:*:*:*:*
cpe:2.3:a:sap:sap_basis:757:*:*:*:*:*:*:*
cpe:2.3:a:sap:sap_basis:756:*:*:*:*:*:*:*
cpe:2.3:a:sap:sap_basis:753:*:*:*:*:*:*:*
cpe:2.3:a:sap:sap_basis:740:*:*:*:*:*:*:*
cpe:2.3:a:sap:sap_basis:758:*:*:*:*:*:*:*
cpe:2.3:a:sap:sap_basis:731:*:*:*:*:*:*:*
cpe:2.3:a:sap:sap_basis:750:*:*:*:*:*:*:*
cpe:2.3:a:sap:sap_basis:700:*:*:*:*:*:*:*
cpe:2.3:a:sap:sap_basis:795:*:*:*:*:*:*:*
cpe:2.3:a:sap:sap_basis:796:*:*:*:*:*:*:*
cpe:2.3:a:sap:sap_basis:752:*:*:*:*:*:*:*
cpe:2.3:a:sap:sap_basis:702:*:*:*:*:*:*:*
First Time Sap
Sap sap Basis

21 Nov 2024, 09:28

Type Values Removed Values Added
References () https://me.sap.com/notes/3456952 - () https://me.sap.com/notes/3456952 -
References () https://url.sap/sapsecuritypatchday - () https://url.sap/sapsecuritypatchday -

09 Jul 2024, 18:19

Type Values Removed Values Added
Summary
  • (es) Debido a un fallo en el mecanismo de protección en SAP NetWeaver Application Server para ABAP y la plataforma ABAP, un desarrollador puede omitir la API del escáner de malware configurada debido a un error de programación. Esto conduce a un bajo impacto en la confidencialidad, integridad y disponibilidad de la aplicación.

09 Jul 2024, 05:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-07-09 05:15

Updated : 2025-10-28 18:40


NVD link : CVE-2024-39599

Mitre link : CVE-2024-39599

CVE.ORG link : CVE-2024-39599


JSON object : View

Products Affected

sap

  • sap_basis
CWE
CWE-693

Protection Mechanism Failure