CVE-2024-47581: SAP SE SAP Hcm

Medium severity, CVSS 4.3. EPSS: 0.3% chance of exploitation in the next 30 days.

SAP HCM Approve Timesheets Version 4 application does not perform necessary authorization checks for an authenticated user, resulting in escalation of privileges.There is low impact on integrity of the application. Confidentiality and availibility are not impacted.

Affected products

  • SAP SE SAP Hcm: version S4HCMGXX 101 only

Published 2024-12-10. Last modified 2026-06-17.