VYPR
Critical severity9.1NVD Advisory· Published Aug 10, 2022· Updated Jun 23, 2026

CVE-2022-35293

CVE-2022-35293

Description

Due to insecure session management, SAP Enable Now allows an unauthenticated attacker to gain access to user's account. On successful exploitation, an attacker can view or modify user data causing limited impact on confidentiality and integrity of the application.

Affected products

3

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.