Description
A malicious user can exploit in the Function Module, which is used to read text tables. This Function Module uses specially crafted inputs to execute arbitrary database commands to retrieve, modify, or remove data persisted by the system.
Available fix and Supported packages
- EA-DFPS | 600 | 600
- EA-DFPS | 603 | 603
- EA-DFPS | 604 | 604
- EA-DFPS | 605 | 605
- EA-DFPS 600 | SAPKGPDD18 |
- EA-DFPS 603 | SAPK-60307INEADFPS |
- EA-DFPS 605 | SAPK-60502INEADFPS |
- EA-DFPS 604 | SAPK-60408INEADFPS |
Affected component
- IS-DFS-LM
Line Maintenance
CVSS
Score: 0
PoC
Detailed vulnerability information added to RedRays Security Platform. Contact [email protected] for details.
URL
https://launchpad.support.sap.com/#/notes/1484926