Security Advisory

CVE-2021-33671

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-07-14 11:03:32
Last updated 2024-08-03 23:58:22
Assigner sap
State PUBLISHED

Description

SAP NetWeaver Guided Procedures (Administration Workset), versions - 7.10, 7.20, 7.30, 7.31, 7.40, 7.50, does not perform necessary authorization checks for an authenticated user, resulting in escalation of privileges. The impact of missing authorization could result to abuse of functionality restricted to a particular user group, and could allow unauthorized users to read, modify or delete restricted data.