Loading HuntDB...

GHSA-g32x-xmpf-m6qq

GitHub Security Advisory

⚠ Unreviewed MODERATE Has CVE

Advisory Details

Due to missing authorization check, SAP NetWeaver Application Server for ABAP - versions 700, 701, 702, 731, allows an authenticated attacker, to access content on the start screen of any transaction that is available with in the same SAP system even if he/she isn't authorized for that transaction. A successful exploitation could expose information and in worst case manipulate data before the start screen is executed, resulting in limited impact on confidentiality and integrity of the application.

Related CVEs

Key Information

GHSA ID
GHSA-g32x-xmpf-m6qq
Published
March 11, 2022 12:02 AM
Last Modified
March 18, 2022 12:01 AM
CVSS Score
5.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: June 26, 2025 6:25 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.