Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-14347 | SAP S4CORE OData meta-data property allows an authenticated attacker to access restricted information due to missing authorization check. This could cause a low impact on confidentiality but integrity and availability of the application are not impacted. |
Tue, 13 May 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 13 May 2025 00:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | SAP S4CORE OData meta-data property allows an authenticated attacker to access restricted information due to missing authorization check. This could cause a low impact on confidentiality but integrity and availability of the application are not impacted. | |
| Title | Missing Authorization check in SAP S4/HANA (OData meta-data property) | |
| Weaknesses | CWE-472 | |
| References |
| |
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: sap
Published:
Updated: 2025-05-13T14:02:42.025Z
Reserved: 2025-04-16T13:25:53.589Z
Link: CVE-2025-43002
Updated: 2025-05-13T14:02:38.345Z
Status : Deferred
Published: 2025-05-13T01:15:48.727
Modified: 2026-04-15T00:35:42.020
Link: CVE-2025-43002
No data.
OpenCVE Enrichment
No data.
EUVD