VYPR
Unrated severityNVD Advisory· Published Jan 14, 2022· Updated Aug 3, 2024

CVE-2022-22530

CVE-2022-22530

Description

The F0743 Create Single Payment application of SAP S/4HANA - versions 100, 101, 102, 103, 104, 105, 106, does not check uploaded or downloaded files. This allows an attacker with basic user rights to inject dangerous content or malicious code which could result in critical information being modified or completely compromise the availability of the application.

Affected products

2
  • SAP/S/4HANAllm-fuzzy
    Range: 100, 101, 102, 103, 104, 105, 106
  • SAP SE/SAP S/4HANAv5
    Range: 100

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.