Quantcast
Channel: SCN : All Content - Security
Viewing all articles
Browse latest Browse all 2858

S_Develop and Debug Implications and Risks

$
0
0

Can anyone provide some more specific examples of implications/risks of this access?

 

I have seen lots of comments about how authorization object S_Develop with debug object type is not allowed in production in order to deal with us lovely auditors.  I haven't seen any discussion about the potential implications, how a user could exploit these issues, etc...

 

I found that users can edit tables via SE16N if they have debug access.  I've also seen that it allows users to bypass standard authorizations.  There has to be some big, easily identifiable implications.  I would just like to understand some other scenarios, if possible.  Thank you.


Viewing all articles
Browse latest Browse all 2858

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>