CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 4.3. Exploitation may require the attacker to be authenticated.
CVE
CVE-2020-6273
Severity
MEDIUM
CVSS
4.3
EPSS
0.56%
Original NVD Description
SAP S/4 HANA (Fiori UI for General Ledger Accounting), versions 103, 104, does not perform necessary authorization checks for an authenticated user working with attachment service, allowing the attacker to delete attachments due to Missing Authorization Check.
Related CVEs
Other vulnerabilities affecting the same vendor(s)