SAP Business Warehouse
cpe:2.3:a:sap:business_warehouse:*:*:*:*:*:*:*
A vulnerability in SAP Business Warehouse (Process Chains) allows an attacker to manipulate process execution by exploiting a missing authorization check. An attacker with display authorization for the process chain object could skip one or all processes, disrupting activities such as data loading, activation, or deletion. This manipulation could result in unexpected business reporting outcomes, significantly impacting data integrity, although confidentiality and availability remain unaffected.
Exploitation of this vulnerability could lead to unauthorized manipulation of process executions in business warehouse process chains, causing disruptions in data handling and potentially skewing business reports.
Users are advised to review and implement the SAP Security Notes available in SAP for Me, particularly those related to this vulnerability. Instructions for accessing SAP Security Notes can be found in the SAP Security Notes FAQs.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.