SAP Note 1508969 - Unauthorized usage of application functionality in SRM

Component : SRM Duet / Office Applications - Supplier Self-Services

Solution : https://service.sap.com/sap/support/notes/1508969 (SAP Service marketplace login required)

Key words :
service agent search reason, cross site request forery, transport request number, terms srm server, manual post-implement, software component   srm_server, bsp applications adapted, database table bsptempxsrfstore, unsuspecting authorized user, authorized authenticated user

Related Notes :

1540729ASU content for activating XSRF protection for BSP