PT-2013-6271 · Sap · Sap Customer Relationship Management

Published

2013-12-13

·

Updated

2018-12-10

·

CVE-2013-7095

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions SAP Customer Relationship Management (CRM) version 7.02 EHP 2
Description The issue is related to an XML External Entity (XXE) problem in the XML parser, specifically crm flex data, which has unknown impact and attack vectors.
Recommendations For SAP Customer Relationship Management (CRM) version 7.02 EHP 2, at the moment, there is no information about a newer version that contains a fix for this issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2013-7095

Affected Products

Sap Customer Relationship Management