Sap Se Sap Business Workflow vulnerabilities
2 known vulnerabilities affecting sap_se/sap_business_workflow.
Total CVEs
2
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
MEDIUM2
Vulnerabilities
Page 1 of 1
CVE-2026-24312MEDIUMCVSS 5.2vSAP_BASIS 752vSAP_BASIS 753+6 more2026-02-10
CVE-2026-24312 [MEDIUM] CWE-862 CVE-2026-24312: An erroneous authorization check in SAP Business Workflow leads to privilege escalation. An authenti
An erroneous authorization check in SAP Business Workflow leads to privilege escalation. An authenticated administrative user can bypass role restrictions by leveraging permissions from a less sensitive function to execute unauthorized, high-privilege actions. This has a high impact on data integrity, with low impact on confidentiality and no impact
cvelistv5nvd
CVE-2024-34689MEDIUMCVSS 5.0vSAP_BASIS 700vSAP_BASIS 701+12 more2024-07-09
CVE-2024-34689 [MEDIUM] CWE-918 CVE-2024-34689: WebFlow Services of SAP Business Workflow allows
an authenticated attacker to enumerate accessible H
WebFlow Services of SAP Business Workflow allows
an authenticated attacker to enumerate accessible HTTP endpoints in the
internal network by specially crafting HTTP requests. On successful
exploitation this can result in information disclosure. It has no impact on
integrity and availability of the application.
cvelistv5nvd