Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-27210 | Fiori app Manage Payment Blocks does not perform the necessary authorization checks, allowing an attacker with basic user privileges to abuse functionalities that should be restricted to specific user groups.This issue could impact both the confidentiality and integrity of the application without affecting the availability. |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Tue, 09 Sep 2025 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Sap
Sap fiori |
|
| Vendors & Products |
Sap
Sap fiori |
Tue, 09 Sep 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 09 Sep 2025 02:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Fiori app Manage Payment Blocks does not perform the necessary authorization checks, allowing an attacker with basic user privileges to abuse functionalities that should be restricted to specific user groups.This issue could impact both the confidentiality and integrity of the application without affecting the availability. | |
| Title | Missing Authorization Check in Fiori app (Manage Payment Blocks) | |
| Weaknesses | CWE-862 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: sap
Published:
Updated: 2025-09-09T13:47:56.618Z
Reserved: 2025-04-16T13:25:30.252Z
Link: CVE-2025-42915
Updated: 2025-09-09T13:47:52.503Z
Status : Awaiting Analysis
Published: 2025-09-09T02:15:39.517
Modified: 2025-09-09T16:28:43.660
Link: CVE-2025-42915
No data.
OpenCVE Enrichment
Updated: 2025-09-09T21:31:51Z
EUVD