Manage Bank Statement ReProcessing Rules does not perform necessary authorization checks for an authenticated user, resulting in escalation of privileges. By exploiting this vulnerability, an attacker can enable/disable the sharing rule of other users affecting the integrity of the application. Confidentiality and Availability are not affected.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: sap
Published: 2024-05-14T03:53:10.737Z
Updated: 2024-08-01T20:33:52.538Z
Reserved: 2024-04-24T16:59:01.812Z
Link: CVE-2024-4138
Vulnrichment
Updated: 2024-08-01T20:33:52.538Z
NVD
Status : Awaiting Analysis
Published: 2024-05-14T16:17:32.570
Modified: 2024-05-14T19:17:55.627
Link: CVE-2024-4138
Redhat
No data.