CVE-2019-0243: High severity sap bw/4hana vulnerability
Published Jan 8, 2019
·Updated
Under some circumstances, masterdata maintenance in SAP BW/4HANA (fixed in DW4CORE version 1.0 (SP08)) does not perform necessary authorization checks for an authenticated user, resulting in escalation of privileges.
Affected Software
1 affected component
SAP Bw\/4hana=1.0-sp08
Event History
Jan 8, 2019
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2019-0243?
CVE-2019-0243 is considered to be a high-severity vulnerability due to the potential for privilege escalation.
2
How do I fix CVE-2019-0243?
To resolve CVE-2019-0243, update to SAP BW/4HANA version 1.0 SP08 or later.
3
What does CVE-2019-0243 affect?
CVE-2019-0243 affects the masterdata maintenance functionality in SAP BW/4HANA.
4
Who is impacted by CVE-2019-0243?
Authenticated users of SAP BW/4HANA may be impacted by CVE-2019-0243 if they exploit the lack of necessary authorization checks.
5
What types of attacks are possible with CVE-2019-0243?
CVE-2019-0243 may allow an attacker to escalate privileges and gain unauthorized access to sensitive data.