By exploiting this vulnerability, an attacker who previously accessed a mobile phone connected to an SAP system could potentially access all the business information stored and processed in the SAP system.
Please fill out the form to download the security advisory.
Further Reading
Memory Corruption in SAP NetWeaver Master Data Management
Memory Corruption in SAP NetWeaver Master Data Management Impact on Business A remote unauthenticated attacker can cause a Denial of Service (DoS) condition in the SAP NetWeaver Master Data Management server. By exploiting this vulnerability, the attacker can terminate the service, rendering it unavailable for legitimate users and disrupting business processes. Vulnerability Details A memory…
Memory Corruption in SAP NetWeaver Master Data Management
Memory Corruption in SAP NetWeaver Master Data Management Impact on Business An unauthenticated remote attacker can cause the SAP MDM Server to crash by sending a specially crafted packet. This results in a Denial of Service (DoS), rendering the system unavailable to legitimate users and disrupting business processes that rely on Master Data Management services….
Missing Authorization Check in SSC_E2E_STORE_BDCDATA
Missing Authorization Check in SSC_E2E_STORE_BDCDATA Impact on Business A remote, authenticated attacker can exploit a missing authorization check to insert arbitrary records into the INDX database table. This vulnerability has a low impact on the integrity of the system and its business applications. Vulnerability Details The remote-enabled function module SSC_E2E_STORE_BDCDATA within the SAP S4 Foundation…
