PT-2019-4340 · Sap · Sap Hana

Publicado

2019-09-10

·

Atualizado

2020-09-10

·

CVE-2019-0357

CVSS v2.0

7.2

Alta

VetorAV:L/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions SAP HANA versions prior to 2.0
Description The issue is related to security configuration errors in the SAP HANA database management system. It allows an attacker to execute arbitrary commands with operating system "root" privileges.
Recommendations For versions prior to 2.0, update to version 2.0 or later to resolve the issue. As a temporary workaround, consider restricting access to the SAP HANA database to minimize the risk of exploitation.

Correção

Improper Privilege Management

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2020-00057
CVE-2019-0357

Produtos afetados

Sap Hana