← Back

CVE-2024-45282

nvd nist
Published: Oct 8, 2024Modified: Jun 17, 2026

JSON object

Loading...
5.3
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
Exploitability: 3.9 / Impact: 1.4
Source: NVD

Description

Fields which are in 'read only' state in Bank Statement Draft in Manage Bank Statements application, could be modified by MERGE method. The property of an OData entity representing assumably immutable method is not protected against external modifications leading to integrity violations. Confidentiality and Availability are not impacted.

Affected (6)

Products: Sap: S/4 Hana
1 product
S/4 Hana
Configuration A
6 vulnerable
Vulnerable SoftwareAffected Versions
Sap
Version 102
Version 103
Version 104
Version 105
Version 106
Version 107

References (2)

Source: cna@sap.com
Permissions Required
Source: cna@sap.com
Vendor Advisory

Timeline

No history available yet.