CVE-2019-0248
5.9MEDIUM
Key Information:
- Vendor
- SAP
- Status
- Vendor
- CVE Published:
- 8 January 2019
Summary
Under certain conditions SAP Gateway of ABAP Application Server (fixed in SAP_GWFND 7.5, 7.51, 7.52, 7.53; SAP_BASIS 7.5) allows an attacker to access information which would otherwise be restricted.
Affected Version(s)
SAP Gateway of ABAP Application Server(SAP_BASIS) < 7.5
SAP Gateway of ABAP Application Server(SAP_GWFND) < 7.5 < 7.5
SAP Gateway of ABAP Application Server(SAP_GWFND) < 7.51 < 7.51
References
CVSS V3.1
Score:
5.9
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved