Security vulnerabilities in SAP Fiori Client

It is possible for a malicious application or malware to execute JavaScript in a SAP Fiori application. This can include reading and writing of information and calling device specific JavaScript APIs in the application. SAP Fiori Client version 1.11.5 in Google Play store addresses these issues and users must update to that version.

See SAP Note 2691126 – [CVE-2018-2485] Security vulnerabilities in SAP Fiori Client

Version 16 from 13.11.2018 in English

 

 

Leave a Comment

Your email address will not be published. Required fields are marked *

Click here to draw a picture to include in your comment.