CVE-2018-2455
11.09.2018, 15:29
SAP Enterprise Financial Services, versions 6.05, 6.06, 6.16, 6.17, 6.18, 8.0 (in business function EAFS_BCA_BUSOPR_SEPA) does not perform necessary authorization checks for an authenticated user, resulting in escalation of privileges.Enginsight
Vendor | Product | Version |
---|---|---|
sap | enterprise_financial_services | 6.05 |
sap | enterprise_financial_services | 6.06 |
sap | enterprise_financial_services | 6.16 |
sap | enterprise_financial_services | 6.17 |
sap | enterprise_financial_services | 6.18 |
sap | enterprise_financial_services | 8.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References