CVE-2023-42473: SAP s/4hana

Medium severity, CVSS 5.4. EPSS: 0.3% chance of exploitation in the next 30 days.

S/4HANA Manage (Withholding Tax Items) - version 106, does not perform necessary authorization checks for an authenticated user, resulting in escalation of privileges which has low impact on the confidentiality and integrity of the application.

Affected products

  • SAP s/4hana: version 106 only

Published 2023-10-10. Last modified 2026-06-17.