CVE-2022-35293

Due to insecure session management, SAP Enable Now allows an unauthenticated attacker to gain access to user's account. On successful exploitation, an attacker can view or modify user data causing limited impact on confidentiality and integrity of the application.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:sap:enable_now_manager:1.0:*:*:*:*:*:*:*

Information

Published : 2022-08-10 13:15

Updated : 2022-08-15 05:17


NVD link : CVE-2022-35293

Mitre link : CVE-2022-35293


JSON object : View

CWE
CWE-862

Missing Authorization

Advertisement

dedicated server usa

Products Affected

sap

  • enable_now_manager