Description
A vulnerability exists in the Web Dynpro chat application named Real Time Collaboration (RTC). An unauthenticated user can retrieve the list of SAP users, groups and roles.
Remediation
Install SAP Security Note 2255990.
References
Related Vulnerabilities
WordPress Plugin WooCommerce Email Test Information Disclosure (1.5)
WordPress Plugin Jigoshop Information Disclosure (1.17.9)
phpMyAdmin Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2016-9852)
WordPress 5.6.x Multiple Vulnerabilities (5.6 - 5.6.4)
WordPress Plugin Download Shortcode Arbitrary File Disclosure (0.1)