HackTips.

页面数据均来自于CVE官方,仅调用Api进行查询

1@1042.net

CVE编号CVE-2025-26660
发布日期2025-03-11T00:36:54.383Z
更新日期2025-03-11T14:13:59.512Z
状态PUBLISHED
受影响的供应商SAP_SE
受影响的产品SAP Fiori apps (Posting Library)
描述SAP Fiori applications using the posting library fail to properly configure security settings during the setup process, leaving them at default or inadequately defined. This vulnerability allows an attacker with low privileges to bypass access controls within the application, enabling them to potentially modify data. Confidentiality and Availability are not impacted.

参考链接:

Image Additional Image