Описание
SAP GRC Access Control - versions V1100_700, V1100_731, V1200_750, does not perform necessary authorization checks for an authenticated user, which could lead to escalation of privileges.
Ссылки
- Permissions Required
- Vendor Advisory
- Permissions Required
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:sap:access_control:v1100_700:*:*:*:*:*:*:*
cpe:2.3:a:sap:access_control:v1100_731:*:*:*:*:*:*:*
cpe:2.3:a:sap:access_control:v1200_750:*:*:*:*:*:*:*
EPSS
Процентиль: 60%
0.00406
Низкий
8.8 High
CVSS3
6.5 Medium
CVSS2
Дефекты
CWE-862
Связанные уязвимости
github
около 4 лет назад
SAP GRC Access Control - versions V1100_700, V1100_731, V1200_750, does not perform necessary authorization checks for an authenticated user, which could lead to escalation of privileges.
EPSS
Процентиль: 60%
0.00406
Низкий
8.8 High
CVSS3
6.5 Medium
CVSS2
Дефекты
CWE-862