Due to a missing authorization check, an authenticated attacker could upload a file as a template for solution documentation in SAP Solution Manager 7.1. After successful exploitation, an attacker can cause limited impact on the integrity and availability of the application.
Metrics
Affected Vendors & Products
References
History
Tue, 08 Apr 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 08 Apr 2025 07:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Due to a missing authorization check, an authenticated attacker could upload a file as a template for solution documentation in SAP Solution Manager 7.1. After successful exploitation, an attacker can cause limited impact on the integrity and availability of the application. | |
| Title | Missing Authorization check in SAP Solution Manager | |
| Weaknesses | CWE-862 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: sap
Published: 2025-04-08T07:15:02.720Z
Updated: 2025-04-08T13:17:57.793Z
Reserved: 2025-03-13T18:03:35.489Z
Link: CVE-2025-30017
Updated: 2025-04-08T13:17:52.221Z
Status : Awaiting Analysis
Published: 2025-04-08T08:15:17.650
Modified: 2025-04-08T18:13:53.347
Link: CVE-2025-30017
No data.