Description
Due to a missing authentication check in the SAP NetWeaver application on IBM i-series, the application allows high privileged unauthorized users to read, modify, or delete sensitive information, as well as access administrative or privileged functionalities. This results in a high impact on the confidentiality, integrity, and availability of the application.
Problem types
CWE-250: Execution with Unnecessary Privileges
Product status
KRNL64NUC 7.22
7.22EXT
KRNL64UC 7.22
7.53
KERNEL 7.22
7.54