GHSA-6mjg-37cp-42x5
CRITICALCVE-2023-50423SAP BTP Security Services Integration Library ([Python] sap-xssec) allows under certain conditions an escalation of privileges. On successful exploitation, an unauthenticated attacker can obtain arbitrary permissions within the application.
- Affected
- < 4.1.0
- Fixed in
- 4.1.0
- Weakness
- CWE-269
- Published
- 2023-12-13
- Source
- github
GHSANVDMITREreferencereferencereferencereferencereferencereferencereferencereference