CVE-2016-6256 | SAP Business One for Android 1.2.3 XML Data proc xml external entity reference (EDB-42036 / BID-98590)
A vulnerability classified as critical was found in SAP Business One for Android 1.2.3. This vulnerability affects unknown code of the file B1iXcellerator/exec/soap/vP.001sap0003.in_WCSX/com.sap.b1i.vplatform.runtime/INB_WS_CALL_SYNC_XPT/INB_WS_CALL_SYNC_XPT.ipo/proc of the component XML Data Handler. The manipulation leads to xml external entity reference.
This vulnerability was named CVE-2016-6256. The attack can be initiated remotely. Furthermore, there is an exploit available.