CVE-2021-21465

CVE-2021-21465

The BW Database Interface allows an attacker with low privileges to execute any crafted database queries, exposing the backend database. An attacker can include their own SQL commands which the database will execute without properly sanitizing the untrusted data leading to SQL injection vulnerability which can fully compromise the affected SAP system.

Source: CVE-2021-21465

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다