Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Missing Authorization check in SAP S/4HANA Condition Maintenance
Vulnerability Description
Due to missing authorization check in SAP S/4HANA Condition Maintenance, an authenticated attacker could gain unauthorized access to view and modify condition table records, resulting in low impact on the confidentiality and integrity of the data. Additionally, this vulnerability may prevent the legitimate user from accessing the records, causing low impact on application availability.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
Vulnerability Type
授权机制缺失
Vulnerability Title
SAP S/4HANA Condition Maintenance 安全漏洞
Vulnerability Description
SAP S/4HANA Condition Maintenance是德国思爱普(SAP)公司的一个面向企业销售、采购与定价规则管理的条件维护功能模块。 SAP S/4HANA Condition Maintenance存在安全漏洞,该漏洞源于缺少授权检查,可能导致经过身份验证的攻击者未授权访问和修改条件表记录,对机密性和完整性有低影响,并可能阻止合法用户访问记录,对可用性有低影响。
CVSS Information
N/A
Vulnerability Type
N/A