Description
SAP Banking Services version 500, use an incorrect authorization object in some of its reports. Although the affected reports are protected with otherauthorization objects, exploitation of the vulnerability could lead to privilege escalation and violation in segregation of duties, which in turn could lead to Service interruptions and system unavailability for the victim and users of the component.
Published: 2020-10-20
Score: 6.5 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2020-27512 SAP Banking Services version 500, use an incorrect authorization object in some of its reports. Although the affected reports are protected with otherauthorization objects, exploitation of the vulnerability could lead to privilege escalation and violation in segregation of duties, which in turn could lead to Service interruptions and system unavailability for the victim and users of the component.
History

No history.

Subscriptions

Sap Banking Services
cve-icon MITRE

Status: PUBLISHED

Assigner: sap

Published:

Updated: 2024-08-04T09:02:39.846Z

Reserved: 2020-01-08T00:00:00.000Z

Link: CVE-2020-6362

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2020-10-20T14:15:14.413

Modified: 2024-11-21T05:35:34.860

Link: CVE-2020-6362

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses