Home
MEDIUM: 4.3 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:NDefault status
unaffected
SAP_ABA 700
affected
701
affected
702
affected
731
affected
740
affected
750
affected
751
affected
752
affected
75C
affected
75D
affected
75E
affected
75F
affected
75G
affected
75H
affected
75I
affected
Description
SAP NetWeaver allows an attacker to bypass authorization checks, enabling them to view portions of ABAP code that would normally require additional validation. Once logged into the ABAP system, the attacker can run a specific transaction that exposes sensitive system code without proper authorization. This vulnerability compromises the confidentiality.
Problem types
CWE-863: Incorrect Authorization
Product status
SAP_ABA 700
701
702
731
740
750
751
752
75C
75D
75E
75F
75G
75H
75I