Potential disclosure and modification of persisted data, SAP security note 1493234
Description
A malicious user can exploit and use specially crafted inputs to execute arbitrary database commands to retrieve, modify, or remove data persisted by the system.
Available fix and Supported packages
- EA-PS | 603 | 603
- EA-PS | 604 | 604
- EA-PS | 605 | 605
- EA-PS 605 | SAPK-60502INEAPS |
- EA-PS 604 | SAPK-60408INEAPS |
- EA-PS 603 | SAPK-60308INEAPS |
Affected component
- PSM-FM-BCS-BU
Budgeting
CVSS
Score: 0
Exploit
Exploit is not available.
For detailed information please contact the mail [email protected]
URL
https://launchpad.support.sap.com/#/notes/1493234