Description
A malicious user can execute functions in self-developed portal applications in SAP Netweaver Portal without authentication and authorization.
Available fix and Supported packages
Affected component
- EP-PIN
SAP Enterprise Portal (On Premise)
CVSS
Score: 0
PoC
Detailed vulnerability information added to RedRays Security Platform. Contact [email protected] for details.
URL
https://launchpad.support.sap.com/#/notes/1544240