Description
A malicious user can trigger functionality in Supplier Collaboration Portal without authentication and authorization.
Available fix and Supported packages
- SUP-PORTAL | 2.0 | 2.0
- SUP-PORTAL | 300 | 300
- BP SUPPLIER COLLABORATION 2.0 | SP017 | 000000
Affected component
- EP-PCT-SRM-SC
BP for Supplier Collaboration
CVSS
Score: 0
PoC
Detailed vulnerability information added to RedRays Security Platform. Contact [email protected] for details.
URL
https://launchpad.support.sap.com/#/notes/1507296