Privilege Escalation Vulnerability in SAP S/4 HANA Map Treasury Correspondence Format
CVE-2023-24524
6.5MEDIUM
Key Information:
- Vendor
- SAP
- Vendor
- CVE Published:
- 14 February 2023
Summary
A serious security issue in SAP S/4 HANA's Map Treasury Correspondence Format data allows an authenticated user to bypass necessary authorization checks. This oversight can lead to unauthorized deletion of critical data, severely impacting system availability and integrity. Organizations using affected versions of SAP S/4 HANA should take immediate action to mitigate the risks associated with this vulnerability.
Affected Version(s)
S/4 HANA (Map Treasury Correspondence Format Data) 104
S/4 HANA (Map Treasury Correspondence Format Data) 105
References
CVSS V3.1
Score:
6.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved