Description
IS-M-AMC contains code that permits the execution of arbitrary program code of the user#s choice.
An attacker can therefore control the behavior of the system, or can potentially escalate privileges by executing malicious code, without having their own legitimate credentials.
Available fix and Supported packages
- IS-M/AMC | 2.0 | 2.0
- IS-M/AMC | 3.0 | 3.0
- IS-M/AMC | 4.0 | 4.0
- IS-M/AMC 3.0 | SAPK-30008INAMC |
- IS-M/AMC 2.0 | SAPK-20011INAMC |
- IS-M/AMC 4.0 | SAPK-40003INISAMC |
- IS-M/AMC 3.0 | SAPK-30009INAMC |
Affected component
- IS-M-AMC
Advertising Management Classified
CVSS
Score: 0
PoC
Detailed vulnerability information added to RedRays Security Platform. Contact [email protected] for details.
URL
https://launchpad.support.sap.com/#/notes/1596335