CVE Database · CVE-2017-16684
CVSS v3.1
N/A
EPSS
2.50%
Published
Dec 12, 2017
Modified
May 12, 2026
Public PoC / Exploit (1)
All weaponized →Links to public security research (Exploit-DB, Nuclei, Trickest, GitHub) for defensive use only.
Description
SAP Business Intelligence Promotion Management Application, Enterprise 4.10, 4.20, and 4.30, does not perform authentication checks for functionalities that require user identity.
Weaknesses (CWE)
Affected Products (3)
References (6)