SAP Business One Hana Chef Cookbook, versions - 8.82, 9.0, 9.1, 9.2, 9.3, 10.0, used to install SAP Business One on SAP HANA, allows an attacker to inject code that can be executed by the application. An attacker could thereby control the behaviour of the application thereby highly impacting the integrity and availability of the application.
References
Link | Resource |
---|---|
https://launchpad.support.sap.com/#/notes/3049661 | Permissions Required Vendor Advisory |
https://wiki.scn.sap.com/wiki/pages/viewpage.action?pageId=576094655 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2021-05-11 08:15
Updated : 2021-05-21 09:11
NVD link : CVE-2021-27614
Mitre link : CVE-2021-27614
JSON object : View
CWE
CWE-74
Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')
Products Affected
sap
- business_one
- business-one-hana-chef-cookbook