CVE-2024-32731

5.5MEDIUM

SAP My Travel Requests does not perform necessary authorization checks for an authenticated user, resulting in escalation of privileges. On successful exploitation, the attacker can upload a maliciou

Veröffentlicht: 5/14/2024Aktualisiert: 11/21/2024

Beschreibung

SAP My Travel Requests does not perform necessary authorization checks for an authenticated user, resulting in escalation of privileges. On successful exploitation, the attacker can upload a malicious attachment to a business trip request which will lead to a low impact on the confidentiality, integrity and availability of the application. 

KI-AnalyseKI-gestützt

Referenzen