Description
In FIN-FSCM-CR, a malicious user can use specially crafted inputs to modify database commands, resulting in the retrieval of additional information persisted by the system.
Available fix and Supported packages
- FINBASIS | 300 | 300
- FINBASIS | 600 | 600
- FINBASIS | 602 | 602
- FINBASIS | 603 | 603
- FINBASIS | 604 | 604
- FINBASIS | 605 | 605
- FINBASIS 300 | SAPK-30027INFINBASIS |
- FINBASIS 600 | SAPK-60020INFINBASIS |
- FINBASIS 602 | SAPK-60210INFINBASIS |
- FINBASIS 603 | SAPK-60309INFINBASIS |
- FINBASIS 604 | SAPK-60410INFINBASIS |
- FINBASIS 605 | SAPK-60505INFINBASIS |
Affected component
- FIN-FSCM-CR
Credit Management
CVSS
Score: 0
PoC
Detailed vulnerability information added to RedRays Security Platform. Contact [email protected] for details.
URL
https://launchpad.support.sap.com/#/notes/1592960