SAP Focused RUN versions 200, 300, does not perform necessary authorization checks for an authenticated user, which allows a user to call the oData service and manipulate the activation for the SAP EarlyWatch Alert service data collection and sending to SAP without the intended authorization.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
sap focused run 200 |
||
sap focused run 300 |