Back to search
CVE-2013-3061
Published: May 1, 2013
Modified: Aug 6, 2024
PUBLISHED
Description
The ISHMED-PATRED_TRANSACT_RFCCALL function in the IS-H Industry-Specific Component Hospital subsystem in SAP Healthcare Industry Solution, and the SAP ERP central component (aka ECC 6), allows remote authenticated users to bypass intended transaction restrictions via unspecified vectors.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
https://service.sap.com/sap/support/notes/1691744
x_refsource_MISC
http://scn.sap.com/docs/DOC-8218
x_refsource_CONFIRM
20130416 [ESNC-2013-001] Privilege Escalation in SAP Healthcare Industry Solution
mailing-list
x_refsource_BUGTRAQ
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now