Description
By default there are no restrictions for the HTTP PUT method.
Also, authentication is not required if you try to upload a file.
Available fix and Supported packages
- SAP-JEE | 6.20 | 6.20
Affected component
- BC-JAS-WEB
Web Container, HTTP, JavaMail, Servlets
CVSS
Score: 0
PoC
Detailed vulnerability information added to RedRays Security Platform. Contact [email protected] for details.
URL
https://launchpad.support.sap.com/#/notes/604285