Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Missing input validation vulnerability in SAP S/4HANA (Private Cloud or On-Premise)
Vulnerability Description
Due to missing input validation, an attacker with high privilege access to ABAP reports could delete the content of arbitrary database tables, if the tables are not protected by an authorization group. This leads to a high impact on integrity and availability of the database but no impact on confidentiality.
CVSS Information
CVSS:3.1/AV:A/AC:L/PR:H/UI:N/S:C/C:N/I:H/A:H
Vulnerability Type
CWE-1287
Vulnerability Title
SAP S/4HANA 安全漏洞
Vulnerability Description
SAP S/4HANA是德国思爱普(SAP)公司的一个基于 SAP HANA 内存数据库系统的的企业资源管理软件。 SAP S/4HANA存在安全漏洞,该漏洞源于缺少输入验证,可能导致攻击者删除数据库表内容。
CVSS Information
N/A
Vulnerability Type
N/A