Description
The CRM portal integration could be abused by a malicious user, who can modify displayed application content without authorization.
Available fix and Supported packages
- BP_CRM50 | 6.0 | 6.0
- CRMFND | 700 | 700
- CRMFND | 701 | 701
- CRMFND | 730 | 730
- BP CRM FOUNDATION CODG 7.30 | SP000 | 000002
- BP CRM FOUNDATION CODG 7.31 | SP000 | 000000
- BP CRM FOUNDATION CODING 7.0 | SP009 | 000002
- BP CRM FOUNDATION CODING 7.01 | SP004 | 000000
- BP SAP CRM 6.0 (NEW) | SP008 | 000002
Affected component
- CA-WUI-EP
Portal Integration
CVSS
Score: 0
PoC
Detailed vulnerability information added to RedRays Security Platform. Contact [email protected] for details.
URL
https://launchpad.support.sap.com/#/notes/1554460