SAP security note 1676236, “Unauthorized modification of stored content in E-Recruiting”, released on May 8, 2012. Below are the symptom and SAP recommended solution.
Description
Symptom
HRRCF_START_EXT can be abused by an attacker, allowing them to modify application content, persist the modified content without authorization, and potentially obtain authentication information from other legitimate users.
Solution
The correction involves a large number of objects and cannot be implemented via SNOTE. Apply the relevant support package to resolve the issue.
Full note on SAP: SAP Support Launchpad note 1676236
Detailed exploitation and proof-of-concept material for this note is maintained in the RedRays Security Platform. For access, contact [email protected].
