CVE-2024-44113
published 2024-09-10CVE-2024-44113: Due to missing authorization checks, SAP Business Warehouse (BEx Analyzer) allows an authenticated attacker to access information over the network which is…
PriorityP422medium4.3CVSS 3.1
AVNACLPRLUINSUCLINAN
EPSS
0.26%
17.7th percentile
Due to missing authorization checks, SAP Business Warehouse (BEx Analyzer) allows an authenticated attacker to access information over the network which is otherwise restricted. On successful exploitation the attacker can enumerate information causing a limited impact on confidentiality of the application.
Affected
17 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| sap_se | sap_business_warehouse | — | — |
| sap_se | sap_business_warehouse | — | — |
| sap_se | sap_business_warehouse | — | — |
| sap_se | sap_business_warehouse | — | — |
| sap_se | sap_business_warehouse | — | — |
| sap_se | sap_business_warehouse | — | — |
| sap_se | sap_business_warehouse | — | — |
| sap_se | sap_business_warehouse | — | — |
| sap_se | sap_business_warehouse | — | — |
| sap_se | sap_business_warehouse | — | — |
| sap_se | sap_business_warehouse | — | — |
| sap_se | sap_business_warehouse | — | — |
| sap_se | sap_business_warehouse | — | — |
| sap_se | sap_business_warehouse | — | — |
| sap_se | sap_business_warehouse | — | — |
| sap_se | sap_business_warehouse | — | — |
| sap_se | sap_business_warehouse | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2024-09-10
Published