← Back to CVE List

CVE-2023-41367

Published: 2023-09-12T02:15Z
Last Modified: 2024-11-21T08:21Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
Due to missing authentication check in webdynpro application, an unauthorized user in SAP NetWeaver (Guided Procedures) - version 7.50, can gain access to admin view of specific function anonymously. On successful exploitation of vulnerability under specific circumstances, attacker can view user’s email address. There is no integrity/availability impact. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt