Medium severity4.3NVD Advisory· Published Oct 8, 2024· Updated Jun 17, 2026
CVE-2024-45282
CVE-2024-45282
Description
Fields which are in 'read only' state in Bank Statement Draft in Manage Bank Statements application, could be modified by MERGE method. The property of an OData entity representing assumably immutable method is not protected against external modifications leading to integrity violations. Confidentiality and Availability are not impacted.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
8(expand)+ 1 more
- (no CPE)
- (no CPE)range: S4CORE
cpe:2.3:a:sap:s\/4_hana:102:*:*:*:*:*:*:*+ 5 more
- cpe:2.3:a:sap:s\/4_hana:102:*:*:*:*:*:*:*
- cpe:2.3:a:sap:s\/4_hana:103:*:*:*:*:*:*:*
- cpe:2.3:a:sap:s\/4_hana:104:*:*:*:*:*:*:*
- cpe:2.3:a:sap:s\/4_hana:105:*:*:*:*:*:*:*
- cpe:2.3:a:sap:s\/4_hana:106:*:*:*:*:*:*:*
- cpe:2.3:a:sap:s\/4_hana:107:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
2- url.sap/sapsecuritypatchdaynvdVendor Advisory
- me.sap.com/notes/3251893nvdPermissions Required
News mentions
0No linked articles in our index yet.