Skip links
Arpine Maghakyan

Arpine Maghakyan

Security Researcher of RedRays.

Potential information disclosure relating to Account Plan, SAP security note 1466479

Description

A malicious user can discover information relating to planning profile groups. This information could be used to allow malicious users to specialize their attacks against Account Planning.

Available fix and Supported packages

  • BBPCRM | 500 | 500
  • BBPCRM | 510 | 510
  • BBPCRM | 520 | 520
  • BBPCRM | 600 | 600
  • BBPCRM | 700 | 700
  • BBPCRM 510 | SAPKU51006 |
  • BBPCRM 500 | SAPKU50017 |
  • BBPCRM 520 | SAPKU52010 |
  • BBPCRM 600 | SAPKU60008 |
  • BBPCRM 700 | SAPKU70007 |

Affected component

    CRM-ACP-APL
    Account Planner

CVSS

Score: 0

Exploit

Exploit is not available.
For detailed information please contact the mail [email protected]

URL

https://launchpad.support.sap.com/#/notes/1466479

TAGS

#Information-disclosure

More to explorer