High severity8.8NVD Advisory· Published Mar 12, 2019· Updated Jun 17, 2026
CVE-2019-0276
CVE-2019-0276
Description
Banking services from SAP 9.0 (FSAPPL version 5) and SAP S/4HANA Financial Products Subledger (S4FPSL, version 1) performs an inadequate authorization check for an authenticated user, potentially resulting in escalation of privileges.
Affected products
6cpe:2.3:a:sap:banking_services_from_sap:9.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:sap:banking_services_from_sap:9.0:*:*:*:*:*:*:*
- (no CPE)range: 9.0 (FSAPPL version 5)
- cpe:2.3:a:sap:s\/4hana_financial_products_subledger:1.0:*:*:*:*:*:*:*
- Range: version 1
- SAP SE/Banking services from SAP 9.0 (FSAPPL)v5Range: < 5
- SAP SE/SAP S/4HANA Financial Products Subledger (S4FPSL)v5Range: < 1
Patches
Vulnerability mechanics
References
3- www.securityfocus.com/bid/107353nvdThird Party AdvisoryVDB Entry
- launchpad.support.sap.comnvdPermissions RequiredVendor Advisory
- wiki.scn.sap.com/wiki/pages/viewpage.actionnvdVendor Advisory
News mentions
0No linked articles in our index yet.