The view FIMENAV_COMPCERT in SAP ERP (MENA Certificate Management), EAPPGLO version 607, SAP_FIN versions- 618, 730 and SAP S/4HANA (MENA Certificate Management), S4CORE versions- 100, 101, 102, 103, 104; does not have any authorization check to it due to which an attacker without an authorization group can maintain any company certificate, leading to Missing Authorization Check.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: sap

Published: 2020-03-10T20:18:38

Updated: 2024-08-04T08:55:22.062Z

Reserved: 2020-01-08T00:00:00

Link: CVE-2020-6199

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2020-03-10T21:15:14.043

Modified: 2020-03-12T16:23:58.210

Link: CVE-2020-6199

cve-icon Redhat

No data.