SQL injection vulnerability in the Business Rules Framework (CRM-BF-BRF) in SAP CRM allows attackers to execute arbitrary SQL commands via unspecified vectors, aka SAP Security Note 2097534.
References
Configurations
Information
Published : 2015-05-12 13:59
Updated : 2017-01-02 19:00
NVD link : CVE-2015-3980
Mitre link : CVE-2015-3980
JSON object : View
CWE
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
Products Affected
sap
- customer_relationship_management