CVE-2019-0399

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
11/12/2019
Last modified:
24/08/2020

Description

SAP Portfolio and Project Management, before versions S4CORE 102, 103, EPPM 100 and CPRXRPM 500_702, 600_740, 610_740; unintentionally allows a user to discover accounting information of the Projects in Project dashboard, leading to Information Disclosure.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:sap:portfolio_and_project_management:cprxrpm_500_702:*:*:*:*:*:*:*
cpe:2.3:a:sap:portfolio_and_project_management:cprxrpm_600_740:*:*:*:*:*:*:*
cpe:2.3:a:sap:portfolio_and_project_management:cprxrpm_610_740:*:*:*:*:*:*:*
cpe:2.3:a:sap:portfolio_and_project_management:eppm_100:*:*:*:*:*:*:*
cpe:2.3:a:sap:portfolio_and_project_management:s4core_102:*:*:*:*:*:*:*
cpe:2.3:a:sap:portfolio_and_project_management:s4core_103:*:*:*:*:*:*:*