CVE-2024-27900: SAP Abap Platform
Medium severity, CVSS 5.3. EPSS: 0.4% chance of exploitation in the next 30 days.
Due to missing authorization check, attacker with business user account in SAP ABAP Platform - version 758, 795, can change the privacy setting of job templates from shared to private. As a result, the selected template would only be accessible to the owner.
Affected products
- SAP Abap Platform: version 758 only; version 795 only
Published 2024-03-12. Last modified 2026-06-17.