SAP Supplier Relationship Management
cpe:2.3:a:sap:supplier_relationship_management:*:*:*:*:*:*:*
A vulnerability in SAP Supplier Relationship Management's Master Data Management Catalog allows an unauthenticated attacker to download arbitrary files over the network using a publicly available servlet. This issue can be exploited without user interaction, potentially exposing highly sensitive information while not affecting the integrity or availability of the system.
Exploitation of this vulnerability could lead to unauthorized access to sensitive information.
Users are advised to review and implement the SAP Security Note associated with this vulnerability. This can be done through the SAP for Me platform, where all Security Notes are available. For details on the next SAP Security Patch Day, refer to the SAP Security Patch Day Bulletin.