Description
An authenticated user can use functions of IS-B-BCA to which access should be restricted. This may result in an escalation of privileges.
Available fix and Supported packages
- EA-FINSERV | 500 | 500
- EA-FINSERV | 600 | 600
- EA-FINSERV | 603 | 603
- EA-FINSERV | 604 | 604
- EA-FINSERV | 605 | 605
- EA-FINSERV | 606 | 606
- EA-FINSERV 500 | SAPKGPFC26 |
- EA-FINSERV 600 | SAPKGPFD21 |
- EA-FINSERV 603 | SAPK-60310INEAFINSRV |
- EA-FINSERV 604 | SAPK-60411INEAFINSRV |
- EA-FINSERV 605 | SAPK-60507INEAFINSRV |
- EA-FINSERV 606 | SAPK-60602INEAFINSRV |
Affected component
- IS-B-BCA-MD
Master Data
CVSS
Score: 0
PoC
Detailed vulnerability information added to RedRays Security Platform. Contact [email protected] for details.
URL
https://launchpad.support.sap.com/#/notes/1625060