CVE-2024-47587

LOW

Cash Operations - Privilege Escalation

Title source: llm
STIX 2.1

Description

Cash Operations does not perform necessary authorization check for an authenticated user, resulting in escalation of privileges causing low impact to confidentiality to the application.

References (2)

Core 2
Core References

Scores

CVSS v3 3.5
EPSS 0.0011
EPSS Percentile 28.1%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:N/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-862
Status published
Products (6)
SAP_SE/SAP Cash Management (Cash Operations) 104
SAP_SE/SAP Cash Management (Cash Operations) 105
SAP_SE/SAP Cash Management (Cash Operations) 106
SAP_SE/SAP Cash Management (Cash Operations) 107
SAP_SE/SAP Cash Management (Cash Operations) 108
SAP_SE/SAP Cash Management (Cash Operations) S4CORE 103
Published Nov 12, 2024
Tracked Since Feb 18, 2026