Карточка уязвимости
Характеристики уязвимости
Уровень опасности
Оценка CVSS
Производитель ПО
Наименование ПО
SAP Support Packages
(SAPKA62029, SAPKA62030, SAPKA62031, SAPKA62032, SAPKA62033, SAPKA62034, SAPKA62035, SAPKA62036, SAPKA62037, SAPKA62038, SAPKA62039, SAPKA62040, SAPKA62041, SAPKA62042, SAPKA62043, SAPKA62044, SAPKA62045, SAPKA62046, SAPKA62047, SAPKA62048, SAPKH46B36, SAPKH46B37, SAPKH46B38, SAPKH46B39, SAPKH46B40, SAPKH46B41, SAPKH46B42, SAPKH46B43, SAPKH46B44, SAPKH46B45, SAPKH46B46, SAPKH46B47, SAPKH46B48, SAPKH46B49, SAPKH46B50, SAPKH46B51, SAPKH46B52, SAPKH46B53, SAPKH46B54, SAPKH46B55, SAPKH46C28, SAPKH46C29, SAPKH46C30, SAPKH46C31, SAPKH46C32, SAPKH46C33, SAPKH46C34, SAPKH46C35, SAPKH46C36, SAPKH46C37, SAPKH46C38, SAPKH46C39, SAPKH46C40, SAPKH46C41, SAPKH46C42, SAPKH46C43, SAPKH46C44, SAPKH46C45, SAPKH46C46, SAPKH46C47, SAPKA62028, SAPKH46B35, SAPKH46C27)
SAP Notes
(445892-5)
Описание
This problem is caused by a gap in Note 304394
Note 304394 closes the security gap in the mass maintenance only under the old MASS interface which has been delivered up to and including Release 4.5B.
For the new MASS interface, which is delivered as of Release 4.6, you must implement the AUTHORITY-CHECK at another program location.
Note 304394 closes the security gap in the mass maintenance only under the old MASS interface which has been delivered up to and including Release 4.5B.
For the new MASS interface, which is delivered as of Release 4.6, you must implement the AUTHORITY-CHECK at another program location.
Как исправить
Implement the advance correction.
Afterwards the system queries authorization S_DEVELOP for the entry of ABAP source code.
Afterwards the system queries authorization S_DEVELOP for the entry of ABAP source code.
Ссылки