Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Code Injection vulnerability in SAP CRM
Vulnerability Description
In SAP CRM - versions 700, 701, 702, 712, 713, an attacker who is authenticated with a non-administrative role and a common remote execution authorization can use a vulnerable interface to execute an application function to perform actions which they would not normally be permitted to perform. Depending on the function executed, the attack can can have limited impact on confidentiality and integrity of non-critical user or application data and application availability.
CVSS Information
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:L/I:L/A:L
Vulnerability Type
对生成代码的控制不恰当(代码注入)
Vulnerability Title
SAP CRM 代码注入漏洞
Vulnerability Description
SAP CRM是德国思爱普(SAP)公司的一个客户关系管理系统。 SAP CRM 700版本、701版本、702版本、712版本、713版本存在代码注入漏洞。攻击者利用该漏洞导致数据的机密性和完整性以及可用性受到影响。
CVSS Information
N/A
Vulnerability Type
N/A