Improper Authorization check in SAP LT Replication Server
CVE-2024-21735

7.2HIGH

Key Information:

Vendor
SAP
Vendor
CVE Published:
9 January 2024

Summary

The vulnerability in SAP LT Replication Server arises from the failure to enforce proper authorization checks in versions S4CORE 103 through S4CORE 108. This oversight could empower an attacker with elevated privileges to execute unintended actions, potentially compromising key aspects of the system's confidentiality, integrity, and availability. Organizations utilizing these versions are urged to implement immediate security measures to mitigate the risks associated with this vulnerability.

Affected Version(s)

SAP LT Replication Server S4CORE 103

SAP LT Replication Server S4CORE 104

SAP LT Replication Server S4CORE 105

References

CVSS V3.1

Score:
7.2
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.