CVE-2019-0301: SAP Identity Management

High severity, CVSS 8.8. EPSS: 1.1% chance of exploitation in the next 30 days.

Under certain conditions, it is possible to request the modification of role or privilege assignments through SAP Identity Management REST Interface Version 2, which would otherwise be restricted only for viewing.

Affected products

  • SAP Identity Management: version 2.0 only

Published 2019-05-14. Last modified 2026-06-17.