An authenticated attacker with high privilege can use functions of SLCM transactions to which access should be restricted. This may result in an escalation of privileges causing low impact on integrity of the application.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-41416 | An authenticated attacker with high privilege can use functions of SLCM transactions to which access should be restricted. This may result in an escalation of privileges causing low impact on integrity of the application. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Tue, 10 Sep 2024 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 10 Sep 2024 05:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An authenticated attacker with high privilege can use functions of SLCM transactions to which access should be restricted. This may result in an escalation of privileges causing low impact on integrity of the application. | |
| Title | Missing authorization check in SAP Student Life Cycle Management (SLcM) | |
| Weaknesses | CWE-862 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: sap
Published:
Updated: 2024-09-10T13:45:15.831Z
Reserved: 2024-08-26T10:39:20.933Z
Link: CVE-2024-45284
Updated: 2024-09-10T13:45:08.419Z
Status : Awaiting Analysis
Published: 2024-09-10T05:15:12.407
Modified: 2024-09-10T12:09:50.377
Link: CVE-2024-45284
No data.
OpenCVE Enrichment
No data.
EUVD