Loading vulnerability details…
CVSS v3.1
4.3
EPSS
0.26%
Published
Aug 13, 2024
Modified
Sep 12, 2024
Public PoC / Exploit (1)
All weaponized →Links to public security research (Exploit-DB, Nuclei, Trickest, GitHub) for defensive use only.
Description
SAP Document Builder does not perform necessary authorization checks for one of the function modules resulting in escalation of privileges causing low impact on confidentiality of the application.
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:NWeaknesses (CWE)
Affected Products (12)
References (2)