cbcvebase.
CVE-2020-6316
published 2020-11-10

CVE-2020-6316: SAP ERP and SAP S/4 HANA allows an authenticated user to see cost records to objects to which he has no authorization in PS reporting, leading to Missing…

medium4.3CVSS 3.1
AVNACLPRLUINSUCLINAN
SAP ERP and SAP S/4 HANA allows an authenticated user to see cost records to objects to which he has no authorization in PS reporting, leading to Missing Authorization check.

Affected

28 ranges· showing 25
VendorProductVersion rangeFixed in
saperp
saperp
saperp
saperp
saperp
saperp
saperp
saperp
saperp
saps_4hana
saps_4hana
saps_4hana
saps_4hana
saps_4hana
sap_sesap_erp< 600600
sap_sesap_erp< 602602
sap_sesap_erp< 603603
sap_sesap_erp< 604604
sap_sesap_erp< 605605
sap_sesap_erp< 606606
sap_sesap_erp< 616616
sap_sesap_erp< 617617
sap_sesap_erp< 618618
sap_sesap_s_4_hana< 100100
sap_sesap_s_4_hana< 101101