Карточка уязвимости
Характеристики уязвимости
Уровень опасности
Оценка CVSS
Производитель ПО
Наименование ПО
SAP Notes
(1517670-4)
SAP Support Packages
(SAPK-10006INSRCORE)
Описание
The problem is caused by an SQL injection vulnerability. The code composes an SQL statement that contains strings that can be altered by a malicious user. The manipulated SQL statement can then be used to retrieve data from the database.
Как исправить
Please make sure the note is implemented prior to this note. Then implement the attached correction instructions.
Ссылки