PT-2015-3090 · Sap · Sap Hana

Published

2015-01-22

·

Updated

2023-12-21

·

CVE-2015-1311

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions SAP HANA (affected versions not specified)
Description The issue is related to incorrect code generation management in the SAP HANA database management system. It allows a remote attacker to inject arbitrary ABAP code. The Extended Application Services (XS) in SAP HANA is affected, enabling remote attackers to inject arbitrary ABAP code via unspecified vectors.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Code Injection

Weakness Enumeration

Related Identifiers

BDU:2016-00295
CVE-2015-1311

Affected Products

Sap Hana