Medium severity4.3NVD Advisory· Published Aug 13, 2024· Updated Jun 17, 2026
CVE-2024-42373
CVE-2024-42373
Description
SAP Student Life Cycle Management (SLcM) fails to conduct proper authorization checks for authenticated users, leading to the potential escalation of privileges. On successful exploitation it could allow an attacker to delete non-sensitive report variants that are typically restricted, causing minimal impact on the integrity of the application.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
11(expand)+ 10 more
- (no CPE)
- cpe:2.3:a:sap:student_life_cycle_management:617:*:*:*:*:*:*:*
- cpe:2.3:a:sap:student_life_cycle_management:618:*:*:*:*:*:*:*
- cpe:2.3:a:sap:student_life_cycle_management:802:*:*:*:*:*:*:*
- cpe:2.3:a:sap:student_life_cycle_management:803:*:*:*:*:*:*:*
- cpe:2.3:a:sap:student_life_cycle_management:804:*:*:*:*:*:*:*
- cpe:2.3:a:sap:student_life_cycle_management:805:*:*:*:*:*:*:*
- cpe:2.3:a:sap:student_life_cycle_management:806:*:*:*:*:*:*:*
- cpe:2.3:a:sap:student_life_cycle_management:807:*:*:*:*:*:*:*
- cpe:2.3:a:sap:student_life_cycle_management:808:*:*:*:*:*:*:*
- (no CPE)range: 617
Patches
Vulnerability mechanics
References
2- url.sap/sapsecuritypatchdaynvdVendor Advisory
- me.sap.com/notes/3479293nvdPermissions Required
News mentions
0No linked articles in our index yet.