Privilege Escalation Vulnerability in SAP Enterprise Financial Services
CVE-2018-2455
8.8HIGH
Key Information:
- Vendor
SAP
- Vendor
- CVE Published:
- 11 September 2018
What is CVE-2018-2455?
SAP Enterprise Financial Services versions 6.05, 6.06, 6.16, 6.17, 6.18, and 8.0 have a vulnerability that allows an authenticated user to bypass requisite authorization checks, leading to potential privilege escalation. This flaw could be exploited to gain unauthorized access and carry out operations beyond intended permissions.
Affected Version(s)
SAP Enterprise Financial Services = 6.05 = 6.05
SAP Enterprise Financial Services = 6.06 = 6.06
SAP Enterprise Financial Services = 6.16 = 6.16