VYPR

SAP ECC

by SAP

CVEs (1)

  • CVE-2023-36922Jul 11, 2023
    risk 0.00cvss epss 0.01

    Due to programming error in function module and report, IS-OIL component in SAP ECC and SAP S/4HANA allows an authenticated attacker to inject an arbitrary operating system command into an unprotected parameter in a common (default) extension.  On successful exploitation, the…