Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Missing Authorization check in S/4HANA (Manage Purchasing Info Records)
Vulnerability Description
OData Service in Manage Purchasing Info Records does not perform necessary authorization checks for an authenticated user, allowing an attacker to escalate privileges. This has low impact on integrity of the application.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
Vulnerability Type
授权机制缺失
Vulnerability Title
SAP Just In Time 安全漏洞
Vulnerability Description
SAP Just In Time(SAP JIT)是德国思爱普(SAP)公司的一个应用程序,旨在实现整个供应链中高效的需求驱动生产和物流。 SAP Just In Time存在安全漏洞,该漏洞源于未执行必要的授权检查,可能导致权限提升。
CVSS Information
N/A
Vulnerability Type
N/A