Security Advisory

CVE-2018-2454

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2018-09-11 15:00:00
Last updated 2024-08-05 04:21:33
Assigner sap
CVSS score not scored
State PUBLISHED

Description

SAP Enterprise Financial Services, versions 6.05, 6.06, 6.16, 6.17, 6.18, 8.0 (in business function EAFS_BCA_BUSOPR_2) does not perform necessary authorization checks for an authenticated user, resulting in escalation of privileges.