Due to lack of proper authorization checks when calling user, a function module in obsolete Tobin interface in SAP Production and Revenue Accounting allows unauthorized access that could lead to disclosure of highly sensitive data. There is no impact on integrity or availability.
Metrics
Affected Vendors & Products
References
History
Tue, 10 Sep 2024 14:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Tue, 10 Sep 2024 04:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Due to lack of proper authorization checks when calling user, a function module in obsolete Tobin interface in SAP Production and Revenue Accounting allows unauthorized access that could lead to disclosure of highly sensitive data. There is no impact on integrity or availability. | |
Title | Missing Authorization check in SAP Production and Revenue Accounting (Tobin interface) | |
Weaknesses | CWE-862 | |
References |
| |
Metrics |
cvssV3_1
|
MITRE
Status: PUBLISHED
Assigner: sap
Published: 2024-09-10T03:56:36.139Z
Updated: 2024-09-10T13:26:21.584Z
Reserved: 2024-08-26T10:39:20.933Z
Link: CVE-2024-45286
Vulnrichment
Updated: 2024-09-10T13:26:09.536Z
NVD
Status : Awaiting Analysis
Published: 2024-09-10T04:15:04.950
Modified: 2024-09-10T12:09:50.377
Link: CVE-2024-45286
Redhat
No data.