← Back

CVE-2022-31589

nvd nist
Published: Jun 14, 2022Modified: Nov 21, 2024

JSON object

Loading...
6.5
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Exploitability: 2.8 / Impact: 3.6
Source: NVD

Description

Due to improper authorization check, business users who are using Israeli File from SHAAM program (/ATL/VQ23 transaction), are granted more than needed authorization to perform certain transaction, which may lead to users getting access to data that would otherwise be restricted.

Affected (16)

3 products
Erp Financial Accounting
S/4hana
Configuration A
16 vulnerable
Vulnerable SoftwareAffected Versions
Sap
Version 618
Version 720
Sap
Version c-cee_110_600
Version c-cee_110_602
Version c-cee_110_603
Version c-cee_110_604
Version c-cee_110_700
Sap
Version 100
Version 101
Version 102
Version 103
Version 104
Version 105
Version 106
Version 107
Version 108

References (4)

Source: cna@sap.com
Permissions RequiredVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Permissions RequiredVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.