First published: Tue Nov 08 2022(Updated: )
Due to insufficient input validation, SAP Financial Consolidation - version 1010, allows an authenticated attacker with user privileges to alter current user session. On successful exploitation, the attacker can view or modify information, causing a limited impact on confidentiality and integrity of the application.
Credit: cna@sap.com
Affected Software | Affected Version | How to fix |
---|---|---|
SAP Financial Consolidation | =1010 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-41208 has a low severity impact on the confidentiality and integrity of the SAP Financial Consolidation application.
To fix CVE-2022-41208, ensure that your SAP Financial Consolidation application is updated to the latest version that addresses this vulnerability.
CVE-2022-41208 affects users of SAP Financial Consolidation version 1010 who possess authenticated user privileges.
If CVE-2022-41208 is exploited, an attacker can alter the current user session, potentially viewing or modifying sensitive information.
CVE-2022-41208 is a local vulnerability requiring authenticated user privileges to exploit.