Back to search
CVE-2021-42062
Published: Nov 10, 2021
Modified: Aug 4, 2024
PUBLISHED
Description
SAP ERP HCM Portugal does not perform necessary authorization checks for a report that reads the payroll data of employees in a certain area. Since the affected report only reads the payroll information, the attacker can neither modify any information nor cause availability impacts.
| Vendor | Product | Versions |
|---|---|---|
SAP SE | SAP ERP HCM Portugal | affected < 600affected < 604affected < 608 |
Weaknesses (CWE)
References
https://launchpad.support.sap.com/#/notes/3104456
x_refsource_MISC
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now