PT-2014-5105 · Sap · Sap Netweaver Application Server Abap

Publicado

2014-04-30

·

Atualizado

2014-05-10

·

CVE-2014-3130

CVSS v2.0

4.6

Média

VetorAV:L/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions SAP Netweaver ABAP Application Server (affected versions not specified)
Description The issue concerns the ABAP Help documentation and translation tools (BC-DOC-HLP) in SAP Netweaver ABAP Application Server, where access is not properly restricted. This allows local users to gain privileges and execute ABAP instructions via crafted help messages.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2014-3130

Produtos afetados

Sap Netweaver Application Server Abap