SAP ABAP Platform Kernel - versions 7.77, 7.81, 7.85, 7.86, does not perform necessary authorization checks for an authenticated business user, resulting in escalation of privileges. That means this business user is able to read and modify data beyond the vulnerable system. However, the attacker can neither significantly reduce the performance of the system nor stop the system.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: sap

Published: 2021-11-10T15:22:15

Updated: 2024-08-04T02:44:10.848Z

Reserved: 2021-09-03T00:00:00

Link: CVE-2021-40501

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2021-11-10T16:15:08.517

Modified: 2021-11-12T20:38:45.423

Link: CVE-2021-40501

cve-icon Redhat

No data.