CVE-2024-32731

CVSS 3.1 Score 5.5 of 10 (medium)

Details

Published May 14, 2024
CWE ID 862

Summary

CVE-2024-32731 is a vulnerability affecting SAP My Travel Requests. This issue allows authenticated users to bypass necessary authorization checks, granting them elevated privileges. An attacker can exploit this flaw by uploading a malicious attachment to a business trip request. Though the impact is reported to be low, it may pose potential risks to the confidentiality, integrity, and availability of the application.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share