The BW Database Interface does not perform necessary authorization checks for an authenticated user, resulting in escalation of privileges that allows the user to practically read out any database table.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: sap

Published: 2021-01-12T14:40:53

Updated: 2024-08-03T18:16:22.575Z

Reserved: 2020-12-30T00:00:00

Link: CVE-2021-21468

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2021-01-12T15:15:16.093

Modified: 2022-10-01T02:03:29.453

Link: CVE-2021-21468

cve-icon Redhat

No data.