Description
A malicious user can exploit IS-U-IDE and use specially crafted inputs to modify data-base commands, resulting in the retrieval of additional information persisted by the system.
Available fix and Supported packages
- IS-UT | 602 | 602
- IS-UT | 603 | 603
- IS-UT | 604 | 604
- IS-UT | 605 | 605
- IS-UT 602 | SAPK-60210INISUT |
- IS-UT 603 | SAPK-60309INISUT |
- IS-UT 604 | SAPK-60410INISUT |
- IS-UT 605 | SAPK-60506INISUT |
Affected component
- IS-U-IDE
Intercompany Data Exchange
CVSS
Score: 0
PoC
Detailed vulnerability information added to RedRays Security Platform. Contact [email protected] for details.
URL
https://launchpad.support.sap.com/#/notes/1599378