An attacker can exploit MDS COMPARE TOOL and use specially crafted inputs to read and modify database commands, resulting in the retrieval of additional information persisted by the system.
2023-06-13T03:15:09.473
2024-11-21T08:02:44.353
Modified
CVSSv3.1: 4.2 (MEDIUM)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | sap | master_data_synchronization | 600 | Yes |
Application | sap | master_data_synchronization | 602 | Yes |
Application | sap | master_data_synchronization | 603 | Yes |
Application | sap | master_data_synchronization | 604 | Yes |
Application | sap | master_data_synchronization | 605 | Yes |
Application | sap | master_data_synchronization | 606 | Yes |
Application | sap | master_data_synchronization | 616 | Yes |