CVE-2024-27900
CVSS 3.1 Score 4.3 of 10 (medium)
Details
Published Mar 12, 2024
CWE ID 862
Summary
CVE-2024-27900 is a vulnerability affecting SAP ABAP Platform versions 758 and 795. It allows business user accounts to bypass authorization checks, enabling them to alter the privacy settings of job templates from shared to private. Consequently, the affected templates will only be accessible to the template owner, potentially limiting access to critical business functions for authorized users. This issue may lead to unintended consequences and impact operational efficiency.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.