CVE-2024-45282: SAP s/4 Hana
Medium severity, CVSS 5.3. EPSS: 0.3% chance of exploitation in the next 30 days.
Fields which are in 'read only' state in Bank Statement Draft in Manage Bank Statements application, could be modified by MERGE method. The property of an OData entity representing assumably immutable method is not protected against external modifications leading to integrity violations. Confidentiality and Availability are not impacted.
Affected products
- SAP s/4 Hana: version 102 only; version 103 only; version 104 only; version 105 only; version 106 only; version 107 only
Published 2024-10-08. Last modified 2026-06-17.