SAP Cloud Connector, version - 2.0, allows an authenticated administrator to modify a configuration file to inject malicious codes that could potentially lead to OS command execution.
No PoCs from references.
- https://github.com/p1ay8y3ar/cve_monitor