PT-2018-15565 · Sap · Sap Kernel 32 Nuc+4

Published

2018-08-14

·

Updated

2020-08-24

·

CVE-2018-2441

CVSS v2.0

5.5

Medium

VectorAV:N/AC:L/Au:S/C:P/I:P/A:N
Name of the Vulnerable Software and Affected Versions SAP Change and Transport System (ABAP) versions 7.21 through 7.73 SAP KERNEL 32 NUC versions 7.21 through 7.22 SAP KERNEL 32 Unicode versions 7.21 through 7.22 SAP KERNEL 64 NUC versions 7.21 through 7.22 SAP KERNEL 64 Unicode versions 7.21 through 7.22
Description The issue allows an attacker to transport information that would otherwise be restricted under certain conditions.
Recommendations For SAP Change and Transport System (ABAP) versions 7.21 through 7.73, consider restricting access to sensitive information to minimize the risk of exploitation. For SAP KERNEL 32 NUC versions 7.21 through 7.22, restrict the use of the transport system until a fix is available. For SAP KERNEL 32 Unicode versions 7.21 through 7.22, avoid using the transport system for sensitive data until the issue is resolved. For SAP KERNEL 64 NUC versions 7.21 through 7.22, limit access to the transport system to authorized personnel only. For SAP KERNEL 64 Unicode versions 7.21 through 7.22, consider implementing additional security measures to protect restricted information.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2018-2441

Affected Products

Sap Change/Transport System
Sap Kernel 32 Nuc
Sap Kernel 32 Unicode
Sap Kernel 64 Nuc
Sap Kernel 64 Unicode