First published: Tue Feb 14 2023(Updated: )
SAP Fiori apps for Travel Management in SAP ERP (My Travel Requests) - version 600, allows an authenticated attacker to exploit a certain misconfigured application endpoint to view sensitive data. This endpoint is normally exposed over the network and successful exploitation can lead to exposure of data like travel documents.
Credit: cna@sap.com
Affected Software | Affected Version | How to fix |
---|---|---|
Sap Fiori | =600 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.