If configured to use an Oracle database and if a query is created using the flexible search java api with a parameterized "in" clause, SAP Commerce - versions 1905, 2005, 2105, 2011, allows attacker to execute crafted database queries, exposing backend database. The vulnerability is present if the parameterized "in" clause accepts more than 1000 values.
2021-12-14T16:15:09.303
2024-11-21T06:27:10.540
Modified
CVSSv3.1: 9.8 (CRITICAL)
AV:N/AC:M/Au:N/C:P/I:P/A:P
8.6
6.4
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | sap | commerce | 1905 | Yes |
| Application | sap | commerce | 2005 | Yes |
| Application | sap | commerce | 2011 | Yes |
| Application | sap | commerce | 2105 | Yes |