CVE-2022-31595: High severity SAP Adaptive Server Enterprise vulnerability
SAP Financial Consolidation - version 1010,?does not perform necessary authorization checks for an authenticated user, resulting in escalation of privileges.
Other sources
SAP Financial Consolidation - version 1010,�does not perform necessary authorization checks for an authenticated user, resulting in escalation of privileges.
— MITRE
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2022-31595?
CVE-2022-31595 is considered a critical vulnerability due to its ability to allow unauthorized privilege escalation.
How do I fix CVE-2022-31595?
To address CVE-2022-31595, update your SAP Financial Consolidation software to the latest version that contains the relevant security patches.
What types of authorization checks are bypassed in CVE-2022-31595?
CVE-2022-31595 bypasses necessary authorization checks for authenticated users, permitting potential privilege escalations.
Which SAP products are affected by CVE-2022-31595?
CVE-2022-31595 affects multiple versions of SAP Adaptive Server Enterprise, including kernel versions 7.22, 7.49, and 7.53.
Is there a risk of data exposure with CVE-2022-31595?
Yes, due to privilege escalation from CVE-2022-31595, there is a significant risk of unauthorized access to sensitive data.