Home
MEDIUM: 5.4 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:NDefault status
unaffected
SAP_APPL 600
affected
602
affected
603
affected
604
affected
605
affected
606
affected
616
affected
SAP_FIN 617
affected
618
affected
700
affected
720
affected
730
affected
S4CORE 100
affected
101
affected
102
affected
103
affected
104
affected
Description
SAP Starter Solution allows an authenticated attacker to execute crafted database queries, thereby exposing the back-end database. As a result, this vulnerability has a low impact on the application's confidentiality and integrity but no impact on its availability.
Problem types
CWE-89: Improper Neutralization of Special Elements used in an SQL Command
Product status
SAP_APPL 600
602
603
604
605
606
616
SAP_FIN 617
618
700
720
730
S4CORE 100
101
102
103
104