VYPR
Medium severity4.3NVD Advisory· Published Oct 8, 2024· Updated Jun 17, 2026

CVE-2024-45282

CVE-2024-45282

Description

Fields which are in 'read only' state in Bank Statement Draft in Manage Bank Statements application, could be modified by MERGE method. The property of an OData entity representing assumably immutable method is not protected against external modifications leading to integrity violations. Confidentiality and Availability are not impacted.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

8
  • SAP/S\/4hana6 versions
    cpe:2.3:a:sap:s\/4_hana:102:*:*:*:*:*:*:*+ 5 more
    • cpe:2.3:a:sap:s\/4_hana:102:*:*:*:*:*:*:*
    • cpe:2.3:a:sap:s\/4_hana:103:*:*:*:*:*:*:*
    • cpe:2.3:a:sap:s\/4_hana:104:*:*:*:*:*:*:*
    • cpe:2.3:a:sap:s\/4_hana:105:*:*:*:*:*:*:*
    • cpe:2.3:a:sap:s\/4_hana:106:*:*:*:*:*:*:*
    • cpe:2.3:a:sap:s\/4_hana:107:*:*:*:*:*:*:*
  • SAP/Manage Bank Statementscpe-rescue2 versions
    S4CORE+ 1 more
    • (no CPE)range: S4CORE
    • (no CPE)

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.