PDFViewer is a control delivered as part of SAPUI5 product which shows the PDF content in an embedded mode by default. If a PDF document contains embedded JavaScript (or any harmful client-side script), the PDFViewer will execute the JavaScript embedded in the PDF which can cause a potential security threat.
History

Wed, 30 Oct 2024 19:15:00 +0000

Type Values Removed Values Added
First Time appeared Sap Se
Sap Se sapui5
CPEs cpe:2.3:a:sap_se:sapui5:*:*:*:*:*:*:*:*
Vendors & Products Sap Se
Sap Se sapui5
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: sap

Published: 2024-05-14T03:44:05.434Z

Updated: 2024-10-30T18:34:02.458Z

Reserved: 2024-04-23T04:04:25.521Z

Link: CVE-2024-33007

cve-icon Vulnrichment

Updated: 2024-08-02T02:27:53.283Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-05-14T16:17:14.693

Modified: 2024-11-21T09:16:13.297

Link: CVE-2024-33007

cve-icon Redhat

No data.