
Cloud Vulnerability DB
A community-led vulnerabilities database
The vulnerability CVE-2021-33704 is associated with SAP products and was disclosed on August 10, 2021. This security flaw is classified under CWE-862, which relates to missing authorization checks. The vulnerability affects multiple SAP products including SAP NetWeaver Enterprise Portal, SAP S/4HANA, and various other SAP system versions (CERT-FR).
The vulnerability is categorized as an authorization bypass issue (CWE-862). According to available information, the vulnerability can be exploited through the network stack, and no in-depth system knowledge is required for an attacker to discover the vulnerable function (NVD).
The exploitation of this vulnerability could lead to a security policy bypass, potentially allowing unauthorized access to protected resources or functionality (CERT-FR).
SAP has released security patches to address this vulnerability. Users are advised to refer to the SAP Security Note 3078072 for detailed remediation instructions (CERT-FR).
Source: This report was generated using AI
Free Vulnerability Assessment
Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.
Get a personalized demo
"Best User Experience I have ever seen, provides full visibility to cloud workloads."
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
"We know that if Wiz identifies something as critical, it actually is."