SAP S4CORE (Manage journal entries) does not perform necessary authorization checks for an authenticated user resulting in escalation of privileges. This has low impact on confidentiality of the application with no impact on integrity and availability of the application.
Metrics
Affected Vendors & Products
References
History
Wed, 12 Nov 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 12 Nov 2025 13:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Sap
Sap s4core |
|
| Vendors & Products |
Sap
Sap s4core |
Tue, 11 Nov 2025 00:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | SAP S4CORE (Manage journal entries) does not perform necessary authorization checks for an authenticated user resulting in escalation of privileges. This has low impact on confidentiality of the application with no impact on integrity and availability of the application. | |
| Title | Missing Authorization check in SAP S4CORE (Manage Journal Entries) | |
| Weaknesses | CWE-862 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: sap
Published: 2025-11-11T00:20:03.667Z
Updated: 2025-11-12T20:09:49.885Z
Reserved: 2025-04-16T13:25:22.789Z
Link: CVE-2025-42899
Updated: 2025-11-12T17:31:22.614Z
Status : Awaiting Analysis
Published: 2025-11-11T01:15:38.783
Modified: 2025-11-12T16:19:59.103
Link: CVE-2025-42899
No data.