CVE-2019-0301
Severity
8.8HIGH
EPSS
0.3%
top 43.73%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMay 14
Latest updateMay 24
Description
Under certain conditions, it is possible to request the modification of role or privilege assignments through SAP Identity Management REST Interface Version 2, which would otherwise be restricted only for viewing.
CVSS vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 2.8 | Impact: 5.9
Affected Packages2 packages
🔴Vulnerability Details
2GHSA▶
GHSA-c78m-cj58-772c: Under certain conditions, it is possible to request the modification of role or privilege assignments through SAP Identity Management REST Interface V↗2022-05-24
CVEList▶
CVE-2019-0301: Under certain conditions, it is possible to request the modification of role or privilege assignments through SAP Identity Management REST Interface V↗2019-05-14