← Back

CVE-2019-0399

nvd nist
Published: Dec 11, 2019Modified: Nov 21, 2024

JSON object

Loading...
6.5
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Exploitability: 2.8 / Impact: 3.6
Source: NVD

Description

SAP Portfolio and Project Management, before versions S4CORE 102, 103, EPPM 100 and CPRXRPM 500_702, 600_740, 610_740; unintentionally allows a user to discover accounting information of the Projects in Project dashboard, leading to Information Disclosure.

Affected (6)

1 product
Portfolio And Project Management
Configuration A
6 vulnerable
Vulnerable SoftwareAffected Versions
Sap
Version cprxrpm_500_702
Version cprxrpm_600_740
Version cprxrpm_610_740
Version eppm_100
Version s4core_102
Version s4core_103

References (4)

Source: cna@sap.com
Permissions Required
Source: af854a3a-2127-422b-91ae-364da2661108
Permissions Required
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.