CyberRota Analysis
This is a high severity vulnerability with a CVSS score of 7.4. See the original NVD description below for full technical details.
CVE
CVE-2024-25642
Severity
HIGH
CVSS
7.4
EPSS
0.54%
Original NVD Description
Due to improper validation of certificate in SAP Cloud Connector - version 2.0, attacker can impersonate the genuine servers to interact with SCC breaking the mutual authentication. Hence, the attacker can intercept the request to view/modify sensitive information. There is no impact on the availability of the system.
Related CVEs
Other vulnerabilities affecting the same vendor(s)