Карточка уязвимости
Характеристики уязвимости
Уровень опасности
Оценка CVSS
Производитель ПО
Наименование ПО
SAP Notes
(1562670-3)
Описание
SAP Business Connector 4.8 executes certain functions by referencing specific URLs. When a malicious user tricks an authenticated user's browser into making a request containing a certain URL and specific parameters, the function is executed with the rights of the authenticated user.
The malicious user may use a cross-site scripting attack to do this, or they may present a link to the victim.
The malicious user may use a cross-site scripting attack to do this, or they may present a link to the victim.
Как исправить
For the Business Connector 4.8 token support has been introduced with CoreFix 4 and Service Release 6. Hence, apply those two patch levels (or higher ones) to your Business Connector 4.8. The referenced notes describe how to get the latest CoreFix and Service Release and how to apply them.
For further information about the XSRF vulnerability and its solution in the Business Connector read the latest version of the SAP BC Security Best Practices Guide 4.8 from https://service.sap.com/sbc-download -> Documentation, chapter 11.
One more remark: Review all of your ACLs and remove in particular the Administrator group from all ACLs used for protecting services belonging to business processes.
For further information about the XSRF vulnerability and its solution in the Business Connector read the latest version of the SAP BC Security Best Practices Guide 4.8 from https://service.sap.com/sbc-download -> Documentation, chapter 11.
One more remark: Review all of your ACLs and remove in particular the Administrator group from all ACLs used for protecting services belonging to business processes.
Ссылки