Description
Manage Bank Statement ReProcessing Rules does not perform necessary authorization checks for an authenticated user, resulting in escalation of privileges. By exploiting this vulnerability, an attacker can enable/disable the sharing rule of other users affecting the integrity of the application. Confidentiality and Availability are not affected.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-32698 | Manage Bank Statement ReProcessing Rules does not perform necessary authorization checks for an authenticated user, resulting in escalation of privileges. By exploiting this vulnerability, an attacker can enable/disable the sharing rule of other users affecting the integrity of the application. Confidentiality and Availability are not affected. |
References
History
No history.
Status: PUBLISHED
Assigner: sap
Published:
Updated: 2024-08-01T20:33:52.538Z
Reserved: 2024-04-24T16:59:01.812Z
Link: CVE-2024-4138
Updated: 2024-08-01T20:33:52.538Z
Status : Deferred
Published: 2024-05-14T16:17:32.570
Modified: 2026-04-15T00:35:42.020
Link: CVE-2024-4138
No data.
OpenCVE Enrichment
Updated: 2025-07-13T21:07:13Z
Weaknesses
EUVD