Description
A malicious user can trigger functionality in SRM-MDM Catalog without authentication and authorization.
Available fix and Supported packages
- SRM_MDM_CAT | 2.0 | 2.0
- SRM_MDM_CAT | 3.0 | 3.0
- SRM_MDM_CAT | 7.01 | 7.01
- SRM_MDM_CAT | 7.02 | 7.02
- SRM-MDM CATALOG 2.0 | SP000 | 000000
- SRM-MDM CATALOG 3.0 | SP009 | 000000
- SRM-MDM CATALOG 7.01 | SP002 | 000000
- SRM-MDM CATALOG 7.02 | SP000 | 000000
Affected component
- SRM-CAT-MDM
MDM Catalog
CVSS
Score: 0
PoC
Detailed vulnerability information added to RedRays Security Platform. Contact [email protected] for details.
URL
https://launchpad.support.sap.com/#/notes/1507294