Vulnerabilities > CVE-2022-41274 - Incorrect Authorization vulnerability in SAP Disclosure Management 10.1
Attack vector
NETWORK Attack complexity
LOW Privileges required
LOW Confidentiality impact
HIGH Integrity impact
NONE Availability impact
NONE Summary
SAP Disclosure Management - version 10.1, allows an authenticated attacker to exploit certain misconfigured application endpoints to read sensitive data. These endpoints are normally exposed over the network and successful exploitation can lead to the exposure of data like financial reports.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |