SAP Knowledge Base Article - Preview

3439002 - SF Mobile Application Perceived Vulnerability

Symptom

Customer reporting that they ran a vulnerability test for SF Mobile app and found some possible problematic permissions and exported components.

  1. Android Components Exported

● com.successfactors.android.basebusiness.common.providers.DataFileProvider
● androidx.test.core.app.InstrumentationActivityInvoker$BootstrapActivity
● androidx.test.core.app.InstrumentationActivityInvoker$EmptyActivity
● androidx.test.core.app.InstrumentationActivityInvoker$EmptyFloatingActivity
● com.google.android.play.core.assetpacks.AssetPackExtractionService

  1. Required Permissions in Android

Permissions identified:
● android.permission.WRITE_CONTACTS
● android.permission.WRITE_EXTERNAL_STORAGE
● android.permission.WRITE_CALENDAR


Read more...

Environment

SAP SuccessFactors Mobile for Android

Product

SAP SuccessFactors Mobile 1.0.0 for Android

Keywords

SF mobile app , vulnerability, SuccessFactors mobile app, android mobile, required permissions, components exported, SF mobile, security, vulnerability test, camera permission , KBA , LOD-SF-PLT-MOB , Mobile Issues , Problem

About this page

This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).

Search for additional results

Visit SAP Support Portal's SAP Notes and KBA Search.