SAP Knowledge Base Article - Preview

3279017 - BPC MS: SQL Injection vulnerability in BPC Microsoft 10 and 10.1

Symptom

SAP BPC MS 10.X allows an unauthorized attacker to execute crafted database queries. An exploitation of this issue could allow an attacker to access, modify, and/or delete data from the backend database.


Read more...

Environment

SAP Business Planning and Consolidation for Microsoft Version 10.0
SAP Business Planning and Consolidation for Microsoft Version 10.1

Product

SAP Business Planning and Consolidation 10.1, version for Microsoft

Keywords

Injection attack, blind SQL injection, database vulnerabilities BPC microsoft SP 10.1 SP 14vvulnerable web method attack network , KBA , EPM-BPC-MS , Microsoft Version , Bug Filed

About this page

This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).

Search for additional results

Visit SAP Support Portal's SAP Notes and KBA Search.