Description
An attacker can discover information relating to PAF Monitor being used to monitor documents sent through SAP PI. This information could be used to allow the attacker to specialize their attacks against SAP system and applications.
Available fix and Supported packages
- SAP_BASIS | 710 | 730
- SAP_BASIS | 800 | 802
- SAP_BASIS 710 | SAPKB71014 |
- SAP_BASIS 711 | SAPKB71109 |
- SAP_BASIS 720 | SAPKB72007 |
- SAP_BASIS 730 | SAPKB73007 |
Affected component
- BC-BMT-PAF
SAP BusinessByDesign – Process Agent Framework
CVSS
Score: 0
PoC
Detailed vulnerability information added to RedRays Security Platform. Contact [email protected] for details.
URL
https://launchpad.support.sap.com/#/notes/1638660