VYPR
Low severity2.7NVD Advisory· Published Sep 12, 2023· Updated Jun 17, 2026

CVE-2023-41368

CVE-2023-41368

Description

The OData service of the S4 HANA (Manage checkbook apps) - versions 102, 103, 104, 105, 106, 107, allows an attacker to change the checkbook name by simulating an update OData call.

Affected products

8
  • SAP/S\/4 Hana6 versions
    cpe:2.3:a:sap:s\/4_hana:102:*:*:*:*:*:*:*+ 5 more
    • cpe:2.3:a:sap:s\/4_hana:102:*:*:*:*:*:*:*
    • cpe:2.3:a:sap:s\/4_hana:103:*:*:*:*:*:*:*
    • cpe:2.3:a:sap:s\/4_hana:104:*:*:*:*:*:*:*
    • cpe:2.3:a:sap:s\/4_hana:105:*:*:*:*:*:*:*
    • cpe:2.3:a:sap:s\/4_hana:106:*:*:*:*:*:*:*
    • cpe:2.3:a:sap:s\/4_hana:107:*:*:*:*:*:*:*
  • SAP/S/4HANAllm-create
    Range: 102, 103, 104, 105, 106, 107
  • SAP_SE/S4 HANA ABAP (Manage checkbook apps)v5
    Range: 102

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.