Home
MEDIUM: 4.4 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:LDefault status
unaffected
ST 720
affected
SAP_BASIS 700
affected
SAP_BASIS 701
affected
SAP_BASIS 702
affected
SAP_BASIS 731
affected
SAP_BASIS 740
affected
SAP_BASIS 750
affected
SAP_BASIS 751
affected
SAP_BASIS 752
affected
SAP_BASIS 753
affected
SAP_BASIS 754
affected
SAP_BASIS 755
affected
SAP_BASIS 756
affected
SAP_BASIS 757
affected
SAP_BASIS 758
affected
SAP_BASIS 914
affected
Description
Due to a missing authorization check, an authenticated attacker could upload a file as a template for solution documentation in SAP Solution Manager 7.1. After successful exploitation, an attacker can cause limited impact on the integrity and availability of the application.
Problem types
CWE-862: Missing Authorization
Product status
ST 720
SAP_BASIS 700
SAP_BASIS 701
SAP_BASIS 702
SAP_BASIS 731
SAP_BASIS 740
SAP_BASIS 750
SAP_BASIS 751
SAP_BASIS 752
SAP_BASIS 753
SAP_BASIS 754
SAP_BASIS 755
SAP_BASIS 756
SAP_BASIS 757
SAP_BASIS 758
SAP_BASIS 914