Due to missing authorization check, an unauthorized user can view the files of other company. This might lead to disclosure of personal data of employees. There is no impact on integrity and availability.
Metrics
Affected Vendors & Products
References
History
Tue, 13 May 2025 14:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Tue, 13 May 2025 00:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Due to missing authorization check, an unauthorized user can view the files of other company. This might lead to disclosure of personal data of employees. There is no impact on integrity and availability. | |
Title | Missing Authorization check in SAP S/4HANA HCM Portugal and SAP ERP HCM Portugal | |
Weaknesses | CWE-862 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: sap
Published: 2025-05-13T00:19:30.248Z
Updated: 2025-05-13T13:57:09.498Z
Reserved: 2025-04-16T13:25:53.589Z
Link: CVE-2025-43008

Updated: 2025-05-13T13:57:06.690Z

Status : Awaiting Analysis
Published: 2025-05-13T01:15:49.600
Modified: 2025-05-13T19:35:18.080
Link: CVE-2025-43008

No data.