← volver
CVE-2024-44112

Missing Authorization check in SAP for Oil & Gas (Transportation and Distribution)

CVSS 4.3 MEDIUMEPSS 0.3%CWE-862
Due to missing authorization check in SAP for Oil & Gas (Transportation and Distribution), an attacker authenticated as a non-administrative user could call a remote-enabled function which will allow them to delete non-sensitive entries in a user data table. There is no effect on confidentiality or availability.
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
Productos afectados
SAP_SE · SAP for Oil & Gas

¿Quieres saber si tu infraestructura está expuesta a esto?

Hablar con TrueHacking →