SAP Cloud Connector, before version 2.11.3, allows an attacker to inject code that can be executed by the application. An attacker could thereby control the behavior of the application.Referenceshttps://launchpad.support.sap.com/#/notes/2696233https://wiki.scn.sap.com/wiki/pages/viewpage.action?pageId=509151985