CVE-2019-0356
4.3MEDIUM
Key Information:
- Vendor
- SAP
- Vendor
- CVE Published:
- 10 September 2019
Summary
Under certain conditions SAP NetWeaver Process Integration Runtime Workbench – MESSAGING and SAP_XIAF (before versions 7.31, 7.40, 7.50) allows an attacker to access information which would otherwise be restricted.
Affected Version(s)
SAP NetWeaver Process Integration Runtime Workbench – MESSAGING and SAP_XIAF < 7.31 < 7.31
SAP NetWeaver Process Integration Runtime Workbench – MESSAGING and SAP_XIAF < 7.40 < 7.40
SAP NetWeaver Process Integration Runtime Workbench – MESSAGING and SAP_XIAF < 7.50 < 7.50
References
CVSS V3.1
Score:
4.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved