Description
A malicious user can exploit Convergent Charging (IS-CC) and use specially crafted inputs to modify database commands, resulting in the retrieval of additional information persisted by the system.
Available fix and Supported packages
- CONV_CHAR | 430 | 430
- CONV_CHAR | 440 | 440
- CONVERGENT CHARGING 4.3 | SP005 | 000000
Affected component
- IS-CC
Convergent Charging
CVSS
Score: 0
PoC
Detailed vulnerability information added to RedRays Security Platform. Contact [email protected] for details.
URL
https://launchpad.support.sap.com/#/notes/1589215