PT-2015-1355 · Sap · Sap Afaria

Published

2015-06-02

·

Updated

2016-12-31

·

CVE-2015-4161

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions SAP Afaria (affected versions not specified)
Description The issue is related to improper access restriction to unspecified functionality in SAP Afaria, allowing remote attackers to obtain sensitive information, gain privileges, or have other unspecified impact. The vulnerability is also associated with insufficient access control to files, which can be exploited by a remote attacker to access protected information or elevate their privileges.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2015-10443
CVE-2015-4161

Affected Products

Sap Afaria