Vulnerabilities > SAP > Master Data Governance > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-12-12 CVE-2023-49058 Unspecified vulnerability in SAP Master Data Governance
SAP Master Data Governance File Upload application allows an attacker to exploit insufficient validation of path information provided by users, thus characters representing ‘traverse to parent directory’ are passed through to the file APIs.
network
low complexity
sap
5.3
2020-05-12 CVE-2020-6256 Missing Authorization vulnerability in SAP Master Data Governance
SAP Master Data Governance, versions - 748, 749, 750, 751, 752, 800, 801, 802, 803, 804, allows users to display change request details without having required authorizations, due to Missing Authorization Check.
network
low complexity
sap CWE-862
4.3