PT-2019-4263 · Sap · Sap Hana Database
Published
2019-08-13
·
Updated
2020-08-24
·
CVE-2019-0350
CVSS v2.0
7.8
High
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
SAP HANA Database versions 1.0 through 2.0
Description
The issue allows an unauthorized attacker to send a malformed connection request, which crashes the indexserver of an SAP HANA instance, leading to Denial of Service. This is due to insufficient input validation in the SAP HANA Database. Exploitation of the issue may enable a remote attacker to cause a denial of service.
Recommendations
For SAP HANA Database versions 1.0 through 2.0, at the moment, there is no information about a newer version that contains a fix for this vulnerability.
RCE
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Sap Hana Database