cve/2024/CVE-2024-45284.md

27 lines
1.5 KiB
Markdown
Raw Normal View History

2025-09-29 21:09:30 +02:00
### [CVE-2024-45284](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-45284)
![](https://img.shields.io/static/v1?label=Product&message=SAP%20Student%20Life%20Cycle%20Management%20(SLcM)&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=617%20&color=brightgreen)
![](https://img.shields.io/static/v1?label=Version&message=618%20&color=brightgreen)
![](https://img.shields.io/static/v1?label=Version&message=800%20&color=brightgreen)
![](https://img.shields.io/static/v1?label=Version&message=802%20&color=brightgreen)
![](https://img.shields.io/static/v1?label=Version&message=803%20&color=brightgreen)
![](https://img.shields.io/static/v1?label=Version&message=804%20&color=brightgreen)
![](https://img.shields.io/static/v1?label=Version&message=805%20&color=brightgreen)
![](https://img.shields.io/static/v1?label=Version&message=806%20&color=brightgreen)
![](https://img.shields.io/static/v1?label=Version&message=807%20&color=brightgreen)
![](https://img.shields.io/static/v1?label=Version&message=808%20&color=brightgreen)
![](https://img.shields.io/static/v1?label=Vulnerability&message=CWE-862%3A%20Missing%20Authorization&color=brightgreen)
### Description
An authenticated attacker with high privilege can use functions of SLCM transactions to which access should be restricted. This may result in an escalation of privileges causing low impact on integrity of the application.
### POC
#### Reference
No PoCs from references.
#### Github
- https://github.com/fkie-cad/nvd-json-data-feeds