Description
An attacker can discover information relating to the database being used in the SAP CRM Mobile Sales Application. This information could be used to allow the attacker to specialize their attacks against the database of the mobile sales installation.
Available fix and Supported packages
- SAP-IPCMSA | 5.0 | 5.0
- SAP-IPCMSA | 6.0 | 6.0
- SAP-IPCMSA | 700 | 700
- SAP-IPCMSA | 701 | 701
- CRM IPC MOBILE 7.01 | SP006 | 000000
- CRM IPC MOBILE 7.01 | SP007 | 000001
- CRM IPC MOBILE 7.02 | SP001 | 000002
- CRM IPC MOBILE 7.02 | SP003 | 000000
- CRM IPC MOBILE 7.31 | SP000 | 000001
- CRM IPC MOBILE 7.32 | SP002 | 000001
Affected component
- CRM-BF-CFG
Product Configuration
CVSS
Score: 0
PoC
Detailed vulnerability information added to RedRays Security Platform. Contact [email protected] for details.
URL
https://launchpad.support.sap.com/#/notes/1663819