SAP Portfolio and Project Management, before versions S4CORE 102, 103, EPPM 100 and CPRXRPM 500_702, 600_740, 610_740; unintentionally allows a user to discover accounting information of the Projects in Project dashboard, leading to Information Disclosure.
References
Link | Resource |
---|---|
https://launchpad.support.sap.com/#/notes/2803554 | Permissions Required |
https://wiki.scn.sap.com/wiki/pages/viewpage.action?pageId=533660397 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2019-12-11 22:15
Updated : 2024-02-28 17:28
NVD link : CVE-2019-0399
Mitre link : CVE-2019-0399
CVE.ORG link : CVE-2019-0399
JSON object : View
Products Affected
sap
- portfolio_and_project_management
CWE