Карточка уязвимости
Характеристики уязвимости
Уровень опасности
Оценка CVSS
Производитель ПО
Наименование ПО
SAP Notes
(1489660-3)
SAP Support Packages
(SAPK-60208INEAAPPL, SAPK-60307INEAAPPL, SAPK-60408INEAAPPL, SAPK-60502INEAAPPL, SAPKGPAB20, SAPKGPAC24, SAPKGPAD18)
Описание
The problem is caused by an SQL injection vulnerability. The code composes an SQL statement including strings that can be altered by a malicious user. The manipulated SQL statement can then be used to retrieve data from the database.
Как исправить
Prevent the unauthorized use of transaction SE37 in your production system.
Implement this note.
Implement this note.
Ссылки