Vulnerability Details CVE-2024-34691
Manage Incoming Payment Files (F1680) of SAP
S/4HANA does not perform necessary authorization checks for an authenticated
user, resulting in escalation of privileges. As a result, it has high impact on
integrity and no impact on the confidentiality and availability of the system.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 28.3%
CVSS Severity
CVSS v3 Score 6.5
Products affected by CVE-2024-34691
-
cpe:2.3:a:sap:s/4_hana:103
-
cpe:2.3:a:sap:s/4_hana:104
-
cpe:2.3:a:sap:s/4_hana:105
-
cpe:2.3:a:sap:s/4_hana:106
-
cpe:2.3:a:sap:s/4_hana:107
-
cpe:2.3:a:sap:s/4_hana:108
-
cpe:2.3:a:sap:s/4_hana:s4core_102