SAP Internet Communication framework (ICM) - versions 700, 701, 702, 730, 731, 740, 750, 751, 752, 753, 754, 755, 756, 785, allows an attacker with logon functionality, to exploit the authentication function by using POST and form field to repeat executions of the initial command by a GET request and exposing sensitive data. This vulnerability is normally exposed over the network and successful exploitation can lead to exposure of data like system details.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
sap netweaver application server abap 702 |
||
sap netweaver application server abap 750 |
||
sap netweaver application server abap 752 |
||
sap netweaver application server abap 753 |
||
sap netweaver application server abap 754 |
||
sap netweaver application server abap 755 |
||
sap netweaver abap 700 |
||
sap netweaver abap 701 |
||
sap netweaver abap 702 |
||
sap netweaver abap 730 |
||
sap netweaver abap 731 |
||
sap netweaver abap 740 |
||
sap netweaver abap 750 |
||
sap netweaver abap 751 |
||
sap netweaver abap 752 |
||
sap netweaver abap 753 |
||
sap netweaver abap 754 |
||
sap netweaver abap 755 |
||
sap netweaver abap 756 |
||
sap netweaver abap 785 |
||
sap netweaver application server abap 700 |
||
sap netweaver application server abap 701 |
||
sap netweaver application server abap 730 |
||
sap netweaver application server abap 731 |
||
sap netweaver application server abap 740 |
||
sap netweaver application server abap 751 |
||
sap netweaver application server abap 756 |
||
sap netweaver application server abap 785 |