CVE-2022-32248

MEDIUM

SAP S/4HANA 101-106 - Improper Input Validation in Manage Checkbooks Component

Title source: llm
STIX 2.1

Description

Due to missing input validation in the Manage Checkbooks component of SAP S/4HANA - version 101, 102, 103, 104, 105, 106, an attacker could insert or edit the value of an existing field in the database. This leads to an impact on the integrity of the data.

References (2)

Core 2
Core References
Permissions Required, Vendor Advisory x_refsource_misc
https://launchpad.support.sap.com/#/notes/3216161

Scores

CVSS v3 5.3
EPSS 0.0031
EPSS Percentile 53.8%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N

Details

CWE
CWE-20
Status published
Products (6)
sap/s\/4hana 101
sap/s\/4hana 102
sap/s\/4hana 103
sap/s\/4hana 104
sap/s\/4hana 105
sap/s\/4hana 106
Published Jul 12, 2022
Tracked Since Feb 18, 2026