CVE-2024-32731
CVSS 3.1 Score 5.5 of 10 (medium)
Details
Published May 14, 2024
CWE ID 862
Summary
CVE-2024-32731 is a vulnerability affecting SAP My Travel Requests. This issue allows authenticated users to bypass necessary authorization checks, granting them elevated privileges. An attacker can exploit this flaw by uploading a malicious attachment to a business trip request. Though the impact is reported to be low, it may pose potential risks to the confidentiality, integrity, and availability of the application.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share