Skip links
Arpine Maghakyan

Arpine Maghakyan

Security Researcher of RedRays.

Potential disclosure of persisted data in AI_SBUSDOC, SAP security note 1900259

Description

An attacker can exploit package AI_SBUSDOC and use specially crafted inputs
to modify database commands, resulting in the retrieval of additional
information persisted by the system.

Available fix and Supported packages

  • ST | 710 | 710
  • ST 710 | SAPKITL710 |

Affected component

    SV-SMG
    SAP Solution Manager

CVSS

Score: 0

Exploit

Exploit is not available.
For detailed information please contact the mail [email protected]

URL

https://launchpad.support.sap.com/#/notes/1900259

TAGS

#SQL-injection
#database
#AI_SBUSDOC

More to explorer