VYPR
Medium severity6.5NVD Advisory· Published Jun 11, 2024· Updated Jun 17, 2026

CVE-2024-34691

CVE-2024-34691

Description

Manage Incoming Payment Files (F1680) of SAP S/4HANA does not perform necessary authorization checks for an authenticated user, resulting in escalation of privileges. As a result, it has high impact on integrity and no impact on the confidentiality and availability of the system.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

10
  • SAP/S\/4 Hana7 versions
    cpe:2.3:a:sap:s\/4_hana:103:*:*:*:*:*:*:*+ 6 more
    • cpe:2.3:a:sap:s\/4_hana:103:*:*:*:*:*:*:*
    • cpe:2.3:a:sap:s\/4_hana:104:*:*:*:*:*:*:*
    • cpe:2.3:a:sap:s\/4_hana:105:*:*:*:*:*:*:*
    • cpe:2.3:a:sap:s\/4_hana:106:*:*:*:*:*:*:*
    • cpe:2.3:a:sap:s\/4_hana:107:*:*:*:*:*:*:*
    • cpe:2.3:a:sap:s\/4_hana:108:*:*:*:*:*:*:*
    • cpe:2.3:a:sap:s\/4_hana:s4core_102:*:*:*:*:*:*:*
  • (expand)+ 1 more
    • (no CPE)
    • (no CPE)range: S4CORE 102
  • SAP/S/4HANAllm-fuzzy

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.