PT-2019-4263 · Sap · Sap Hana Database

Published

2019-08-13

·

Updated

2020-08-24

·

CVE-2019-0350

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions SAP HANA Database versions 1.0 through 2.0
Description The issue allows an unauthorized attacker to send a malformed connection request, which crashes the indexserver of an SAP HANA instance, leading to Denial of Service. This is due to insufficient input validation in the SAP HANA Database. Exploitation of the issue may enable a remote attacker to cause a denial of service.
Recommendations For SAP HANA Database versions 1.0 through 2.0, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2019-04866
CVE-2019-0350

Affected Products

Sap Hana Database