Improper Authorization check in SAP LT Replication Server
CVE-2024-21735

7.3HIGH

Key Information:

Vendor

SAP

Vendor
CVE Published:
9 January 2024

What is CVE-2024-21735?

The vulnerability in SAP LT Replication Server arises from the failure to enforce proper authorization checks in versions S4CORE 103 through S4CORE 108. This oversight could empower an attacker with elevated privileges to execute unintended actions, potentially compromising key aspects of the system's confidentiality, integrity, and availability. Organizations utilizing these versions are urged to implement immediate security measures to mitigate the risks associated with this vulnerability.

Affected Version(s)

SAP LT Replication Server S4CORE 103

SAP LT Replication Server S4CORE 104

SAP LT Replication Server S4CORE 105

References

CVSS V3.1

Score:
7.3
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Adjacent Network
Attack Complexity:
High
Privileges Required:
High
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.