An obsolete functionality in SAP NetWeaver Application Server ABAP did not perform necessary authorization checks. Because of this, an authenticated attacker could obtain information that would otherwise be restricted. It has no impact on integrity or availability on the application.
Metrics
Affected Vendors & Products
References
History
Tue, 14 Jan 2025 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Tue, 14 Jan 2025 00:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | An obsolete functionality in SAP NetWeaver Application Server ABAP did not perform necessary authorization checks. Because of this, an authenticated attacker could obtain information that would otherwise be restricted. It has no impact on integrity or availability on the application. | |
Title | Missing Authorization check in Remote Function Call (RFC) in SAP NetWeaver Application Server ABAP | |
Weaknesses | CWE-862 | |
References |
| |
Metrics |
cvssV3_1
|
MITRE
Status: PUBLISHED
Assigner: sap
Published: 2025-01-14T00:09:52.994Z
Updated: 2025-01-14T15:03:46.979Z
Reserved: 2024-12-11T05:05:11.460Z
Link: CVE-2025-0068
Vulnrichment
Updated: 2025-01-14T15:03:34.078Z
NVD
Status : Received
Published: 2025-01-14T01:15:17.107
Modified: 2025-01-14T01:15:17.107
Link: CVE-2025-0068
Redhat
No data.