Description
ITS services in application component PA-PA-KR can be abused by a malicious user, allowing them to modify displayed application content without authorization, and to potentially obtain authefication information from other legitimate users.
Available fix and Supported packages
- SAP_HRCKR | 600 | 600
- SAP_HRCKR | 604 | 604
- SAP_HRCKR 600 | SAPK-60079INSAPHRCKR |
- SAP_HRCKR 604 | SAPK-60445INSAPHRCKR |
- SAP_HRCKR 600 | SAPK-60082INSAPHRCKR |
- SAP_HRCKR 604 | SAPK-60448INSAPHRCKR |
Affected component
- PA-PA-KR
South Korea
CVSS
Score: 0
PoC
Detailed vulnerability information added to RedRays Security Platform. Contact [email protected] for details.
URL
https://launchpad.support.sap.com/#/notes/1655428