Home
MEDIUM: 6.6 CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:L/I:L/A:LDefault status
unaffected
UIAPFI70 500
affected
600
affected
700
affected
800
affected
900
affected
901
affected
902
affected
S4CORE 102
affected
103
affected
104
affected
105
affected
106
affected
107
affected
108
affected
Description
SAP Fiori App Intercompany Balance Reconciliation allows an attacker with high privileges to upload any file (including script files) without proper file format validation. This has low impact on confidentiality, integrity and availability of the application.
Problem types
CWE-434: Unrestricted Upload of File with Dangerous Type
Product status
UIAPFI70 500
600
700
800
900
901
902
S4CORE 102
103
104
105
106
107
108