Skip links
🔥🔥🔥 Join us for our upcoming training session at Black Hat MEA: "Securing SAP Systems: Expert Insights and Penetration Testing Techniques" 🛡️🔍

Information Disclosure in ABAP Development Environment, SAP security note 2368082

Description

Under certain conditions ABAP Development Environment allows an attacker to access information which would otherwise be restricted.

Some well-known impacts of Information Disclosure are –

  • loss of information and system configuration confidentiality
  • information gathering for further exploits and attacks 

Available fix and Supported packages

  • SAP_BASIS | 740 | 740
  • SAP_BASIS | 750 | 751
  • SAP_BASIS 751 | SAPK-75101INSAPBASIS |
  • SAP_BASIS 750 | SAPK-75006INSAPBASIS |
  • SAP_BASIS 740 | SAPKB74017 |

Affected component

    BC-DWB-UTL
    Workbench Utilities

CVSS

Score: 0

Exploit

Detailed vulnerability information added to RedRays Security Platform. Contact [email protected] for details.

URL

https://launchpad.support.sap.com/#/notes/2368082

TAGS

#Information-Exposure
#Information-Leak
User-Specific-Settings

How to detect over 4100 vulnerabilities in SAP Systems?

More to explorer