PT-2014-4903 · Sap · Sap Hana

Published

2014-04-10

·

Updated

2017-08-29

·

CVE-2014-2749

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions SAP HANA (affected versions not specified)
Description The issue allows remote attackers to obtain sensitive information, including the platform version, host name, and instance number, by sending a malformed HTTP GET request to the HANA ICM process.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Information Disclosure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2014-2749

Affected Products

Sap Hana