Under certain conditions SAP Authenticator for Android allows an attacker to access information which would otherwise be restricted.
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
Link | Tags |
---|---|
https://www.sap.com/documents/2022/02/fa865ea4-167e-0010-bca6-c68f7e60039b.html | vendor advisory |
https://launchpad.support.sap.com/#/notes/3216653 | permissions required vendor advisory |