Vulnerabilities > SAP > R 3 Enterprise Retail > High

DATE CVE VULNERABILITY TITLE RISK
2018-07-10 CVE-2018-2436 Missing Authorization vulnerability in SAP R/3 Enterprise Retail
Executing transaction WRCK in SAP R/3 Enterprise Retail (EHP6) does not perform necessary authorization checks for an authenticated user, resulting in escalation of privileges.
network
low complexity
sap CWE-862
8.8