CVE-2024-27900: SAP Abap Platform

Medium severity, CVSS 5.3. EPSS: 0.4% chance of exploitation in the next 30 days.

Due to missing authorization check, attacker with business user account in SAP ABAP Platform - version 758, 795, can change the privacy setting of job templates from shared to private. As a result, the selected template would only be accessible to the owner.

Affected products

  • SAP Abap Platform: version 758 only; version 795 only

Published 2024-03-12. Last modified 2026-06-17.