CVE-2024-37175
6.5
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Exploitability: 2.8 / Impact: 3.6
Source: NVD
Description
SAP CRM WebClient does not
perform necessary authorization check for an authenticated user, resulting in
escalation of privileges. This could allow an attacker to access some sensitive
information.
Affected (14)
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Version 102 | |
| Version 701 |
References (4)
Timeline
No history available yet.