Description
An authenticated user can use functions of JIT to which access should be re-stricted. This may result in an escalation of privileges.
Available fix and Supported packages
- DIMP | 471 | 471
- ISPSADIN | 10A | 10A
- ECC-DIMP | 500 | 500
- ECC-DIMP | 600 | 600
- ECC-DIMP | 602 | 602
- ECC-DIMP | 603 | 603
- ECC-DIMP | 604 | 604
- ECC-DIMP | 605 | 605
- DI | 46C2 | 46C2
- DIMP 471 | SAPKIPME19 |
- ECC-DIMP 500 | SAPKIPMH15 |
- ECC-DIMP 600 | SAPK-60020INECCDIMP |
- ECC-DIMP 602 | SAPK-60210INECCDIMP |
- ECC-DIMP 603 | SAPK-60309INECCDIMP |
- ECC-DIMP 604 | SAPK-60410INECCDIMP |
- ECC-DIMP 605 | SAPK-60505INECCDIMP |
- DI 46C2 | SAPKIPMD24 |
Affected component
- IS-A-JIT-SJC
Sequenced Just-In-Time Call
CVSS
Score: 0
PoC
Detailed vulnerability information added to RedRays Security Platform. Contact [email protected] for details.
URL
https://launchpad.support.sap.com/#/notes/1593762