SAP ABAP Platform Unauthorized Access Vulnerability in ABAP Build Framework

Vulnerability

A vulnerability in the ABAP Build Framework of SAP ABAP Platform allows authenticated attackers to gain unauthorized access to specific transactions. By using the add-on build functionality within the framework, attackers can invoke transactions and view their details. This vulnerability has a limited impact on application confidentiality, with no effects on integrity or availability.

Impact

Exploitation of this vulnerability could lead to unauthorized access to transactions within the ABAP Build Framework, allowing attackers to view transaction details that they should not have access to.

Remediation

Users are advised to review and implement the SAP Security Notes available in SAP for Me. Instructions for accessing SAP Security Notes can be found in the SAP Security Notes FAQs.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
5.7
impact
0.6
exploitability
4.9
remediation
7.9
relevance
0.0
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.