CVE-2013-3678
CVE-2013-3678
Multiple unspecified vulnerabilities in SAP Governance, Risk, and Compliance (GRC) allow remote authenticated users to gain privileges and execute arbitrary programs via a crafted (1) RFC or (2) SOAP-RFC request.
Affected products
n/a · n/aWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →References
http://packetstormsecurity.com/files/129083/SAP-GRC-Bypass-Privilege-Escalation-Program-Execution.htmlhttp://seclists.org/fulldisclosure/2014/Nov/25https://exchange.xforce.ibmcloud.com/vulnerabilities/98637https://service.sap.com/sap/support/notes/2039348http://www.esnc.de/security-advisories/security-vulnerability-in-sap-grc-access-controlhttp://www.securityfocus.com/archive/1/533965/100/0/threadedhttp://www.securityfocus.com/bid/71055