CVE-2022-41274: Medium severity sap disclosure management vulnerability
SAP Disclosure Management - version 10.1, allows an authenticated attacker to exploit certain misconfigured application endpoints to read sensitive data. These endpoints are normally exposed over the network and successful exploitation can lead to the exposure of data like financial reports.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2022-41274.
What is the title of this vulnerability?
The title of this vulnerability is SAP Disclosure Management - version 10.1 allows an authenticated attacker to exploit certain misconfigured application endpoints to read sensitive data.
What is the severity of CVE-2022-41274?
The severity of CVE-2022-41274 is medium.
What is the affected software for CVE-2022-41274?
The affected software for CVE-2022-41274 is SAP Disclosure Management version 10.1.
How can an attacker exploit this vulnerability?
An authenticated attacker can exploit this vulnerability by exploiting certain misconfigured application endpoints to read sensitive data.