ZeroHour

CVE-2018-2461

CVSS 3.0
8.8 high
EPSS
1%p69
Published
()
Modified
Description

Missing authorization check in SAP HCM Fiori "People Profile" (GBX01 HR version 6.0) for an authenticated user which may result in an escalation of privileges.

Vendors
sap
Products
people profile
Weakness
CWE-862
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.