Skip links
🔥🔥🔥 Join us for our upcoming training session at Black Hat MEA: "Securing SAP Systems: Expert Insights and Penetration Testing Techniques" 🛡️🔍

Tomcat on MSA accessible from the network, SAP security note 1525994

Description

The Apache Tomcat server delivered with SAP CRM Mobile Sales, which is required by the IPC (Internet Pricing & Configuration) user interface is accessible from the network. It could be abused by a malicious user on the network to read and modify data.

Available fix and Supported packages

  • APACHETOMCAT | 6.0 | 6.0
  • APACHETOMCAT | 5.5 | 5.5

Affected component

    CRM-MSA-IPC-CFG
    Use CRM-MSA(IPC Configuration)

CVSS

Score: 0

Exploit

Detailed vulnerability information added to RedRays Security Platform. Contact [email protected] for details.

URL

https://launchpad.support.sap.com/#/notes/1525994

TAGS

#MSA
#access-restriction
#localhost

How to detect over 4100 vulnerabilities in SAP Systems?

More to explorer