CVE-2019-0301

Severity
8.8HIGH
EPSS
0.3%
top 43.73%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMay 14
Latest updateMay 24

Description

Under certain conditions, it is possible to request the modification of role or privilege assignments through SAP Identity Management REST Interface Version 2, which would otherwise be restricted only for viewing.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 2.8 | Impact: 5.9

Affected Packages2 packages

🔴Vulnerability Details

2
GHSA
GHSA-c78m-cj58-772c: Under certain conditions, it is possible to request the modification of role or privilege assignments through SAP Identity Management REST Interface V2022-05-24
CVEList
CVE-2019-0301: Under certain conditions, it is possible to request the modification of role or privilege assignments through SAP Identity Management REST Interface V2019-05-14