Total vulnerabilities in the database
Due to improper authorization check, business users who are using Israeli File from SHAAM program (/ATL/VQ23 transaction), are granted more than needed authorization to perform certain transaction, which may lead to users getting access to data that would otherwise be restricted.
Software | From | Fixed in |
---|---|---|
sap / s/4hana | 100 | 100.x |
sap / s/4hana | 101 | 101.x |
sap / s/4hana | 102 | 102.x |
sap / s/4hana | 103 | 103.x |
sap / s/4hana | 104 | 104.x |
sap / erp_financial_accounting | 618 | 618.x |
sap / erp_financial_accounting | 720 | 720.x |
sap / s/4hana | 105 | 105.x |
sap / s/4hana | 106 | 106.x |
sap / s/4hana | 107 | 107.x |
sap / s/4hana | 108 | 108.x |
sap / erp_localization_for_cee_countries | c-cee_110_600 | c-cee_110_600.x |
sap / erp_localization_for_cee_countries | c-cee_110_602 | c-cee_110_602.x |
sap / erp_localization_for_cee_countries | c-cee_110_603 | c-cee_110_603.x |
sap / erp_localization_for_cee_countries | c-cee_110_604 | c-cee_110_604.x |
sap / erp_localization_for_cee_countries | c-cee_110_700 | c-cee_110_700.x |