SAP Security Note
High priority
SAP security note 1509015, "Unauthorized modification of displayed content in CLP", was released on December 14, 2010. Below are the symptom, SAP recommended solution and the affected software components.
Description
Symptom
A malicious user can trigger functionality in Collaborative Planning without authentication and authorization.
Solution
Implement the attached Correction Instructions or the relevant Support Package.
Reason and prerequisites
Collaborative Planning executes certain functions through referencing specific URLs. When an attacker tricks an authenticated user’s browser into making a request containing a certain URL and specific parameters, the function is executed with the rights of the user.
If present, the attacker may use a Cross Site Scripting attack to trigger the exploit, or use an approach in which a link to click is presented to the victim.
Affected components
- SCM 410
- SCM 500
- SCM 510
- SCM 700
- SCM 701
Full note on SAP: SAP Support Launchpad note 1509015
Detailed exploitation and proof-of-concept material for this note is maintained in the RedRays Security Platform. For access, contact [email protected].
