SAP BASIS Privilege Escalation Vulnerability Affecting Various Versions
CVE-2019-0279
What is CVE-2019-0279?
In SAP BASIS, certain ABAP function modules such as INST_CREATE_R3_RFC_DEST, INST_CREATE_TCPIP_RFCDEST, and INST_CREATE_TCPIP_RFC_DEST lack comprehensive authorization checks under specific conditions. This oversight can lead to unauthorized privilege escalation for authenticated users, potentially compromising system integrity. It is crucial for users of affected SAP BASIS versions to apply the necessary patches provided by SAP to mitigate these vulnerabilities.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
SAP BASIS < from 7.00 to 7.02 < from 7.00 to 7.02
SAP BASIS < from 7.10 to 7.30 < from 7.10 to 7.30
SAP BASIS < 7.31 < 7.31
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved