CVE-2024-45284: Missing authorization check in SAP Student Life Cycle Management (SLcM)
Published Sep 10, 2024
·Updated
An authenticated attacker with high privilege can use functions of SLCM transactions to which access should be restricted. This may result in an escalation of privileges causing low impact on integrity of the application.
Affected Software
1 affected component
SAP Student Life Cycle Management
Event History
Sep 10, 2024
CVE Published
via MITRE·04:57 AM
Data Sourced
via MITRE·04:57 AM
DescriptionSeverity
Data Sourced
via NVD·05:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-45284?
CVE-2024-45284 has a low impact on the integrity of the application.
2
How do I fix CVE-2024-45284?
To fix CVE-2024-45284, apply the latest security patches from SAP for the Student Life Cycle Management software.
3
Who is affected by CVE-2024-45284?
CVE-2024-45284 affects users of SAP Student Life Cycle Management with high privilege access.
4
What is the potential impact of CVE-2024-45284?
The potential impact of CVE-2024-45284 is an escalation of privileges for authenticated attackers.
5
What type of vulnerability is CVE-2024-45284?
CVE-2024-45284 is a privilege escalation vulnerability related to SLCM transactions.