Missing authorization check in GRC-AUD, SAP security note 2137784
Description
An authenticated user can use functions of GRC-AUD to which access should be restricted. This may result in an escalation of privileges.
Available fix and Supported packages
- SAPFRA | 110 | 110
Affected component
- GRC-AUD
GRC Audit Management
CVSS
Score: 0
Exploit
Exploit is not available.
For detailed information please contact the mail [email protected]
URL
https://launchpad.support.sap.com/#/notes/2137784