Vulnerabilities > CVE-2022-26104 - Missing Authorization vulnerability in SAP Financial Consolidation 10.1
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
NONE Integrity impact
LOW Availability impact
NONE Summary
SAP Financial Consolidation - version 10.1, does not perform necessary authorization checks for updating homepage messages, resulting for an unauthorized user to alter the maintenance system message.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |