CVE-2021-33676 PUBLISHED CVSS 6.800000190734863 MEDIUM

A missing authority check in SAP CRM, versions - 700, 701, 702, 712, 713, 714, could be leveraged by an attacker with high privileges to compromise confidentiality, integrity, or availability of the system.

EPSS 0.24% · 46.7th percentile

Risk Scores

CVSS v3.0
6.800000190734863
CVSS:3.0/AV:A/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
EPSS Score
0.24%
46.7th percentile

Affected Products

VendorProductVersions
SAP SESAP CRM< 700, < 701, < 702
sapcustomer_relationship_management700, 701, 702

Timeline

References

Open in Interactive Console →