ZeroHour

CVE-2019-0301

CVSS 3.0
8.8 high
EPSS
1%p64
Published
()
Modified
Description

Under certain conditions, it is possible to request the modification of role or privilege assignments through SAP Identity Management REST Interface Version 2, which would otherwise be restricted only for viewing.

Vendors
sap
Products
identity management
Weakness
CWE-269
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news