CVE-2021-21468
The BW Database Interface does not perform necessary authorization checks for an authenticated user, resulting in escalation of privileges that allows the user to practically read out any database table.
- Affected products
- Bw Database Interface
- Sap Business Warehouse
- = 710, 711, 730, 731, 740, 750, 751, 752, 753, 754, 755, 782
- CVSS 3.1
- 6.5 MEDIUM
- EPSS
- 1.9% (78th percentile)
- Weakness
- CWE-862
- NVD status
- Modified
- Published
- 2021-01-12
CVE-2021-21468 at NVD
1 known exploit for CVE-2021-21468
Proof-of-concept code and exploit modules indexed by Sploitus