SAP NetWeaver AS ABAP (Banking Services), versions - 710, 711, 740, 750, 751, 752, 75A, 75B, 75C, 75D, 75E, does not perform necessary authorization checks for an authenticated user due to Missing Authorization Check, allowing wrong and unexpected change of individual conditions by a malicious user leading to wrong prices.
The product does not perform an authorization check when an actor attempts to access a resource or perform an action.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Netweaver_application_server_abap | Sap | 75a (including) | 75a (including) |
Netweaver_application_server_abap | Sap | 75b (including) | 75b (including) |
Netweaver_application_server_abap | Sap | 75c (including) | 75c (including) |
Netweaver_application_server_abap | Sap | 75d (including) | 75d (including) |
Netweaver_application_server_abap | Sap | 75e (including) | 75e (including) |
Netweaver_application_server_abap | Sap | 710 (including) | 710 (including) |
Netweaver_application_server_abap | Sap | 711 (including) | 711 (including) |
Netweaver_application_server_abap | Sap | 740 (including) | 740 (including) |
Netweaver_application_server_abap | Sap | 750 (including) | 750 (including) |
Netweaver_application_server_abap | Sap | 751 (including) | 751 (including) |
Netweaver_application_server_abap | Sap | 752 (including) | 752 (including) |