SAP released a set of security patches to address a total of 19 software vulnerabilities, most of them are rated medium. The most common vulnerability type is cross site scripting (XSS) The most severe flaw is an SQL injection in SAP CRM WebClient User Interface (SAP Security Note 2450979) that could be exploited by a remote attacker to steal sensitive data (customer datasets, pricing, sales, and prospective bids) The situation is serious, the exploitation of the flaw could have a dramatic impact on the victims.”]
Source: https://securityaffairs.co/wordpress/61859/security/sap-security-patch-day-august.html

