Access Vulnerability in SAP Adaptive Server Enterprise Backup Server
CVE-2018-2468
7.5HIGH
Key Information:
- Vendor
- SAP
- Vendor
- CVE Published:
- 9 October 2018
Summary
A weakness exists in the backup server component of SAP Adaptive Server Enterprise (ASE), specifically in versions 15.7 and 16.0. This flaw enables an attacker to access sensitive information that is typically restricted, posing a significant risk to data confidentiality. Under specific circumstances, exploitation of this vulnerability can allow unauthorized users to compromise the integrity of secured data, emphasizing the need for immediate awareness and remediation measures.
Affected Version(s)
SAP Adaptive Server Enterprise (ASE) 15.7
SAP Adaptive Server Enterprise (ASE) 16.0
References
CVSS V3.1
Score:
7.5
Severity:
HIGH
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved