SAP Point of Sale Store Manager Hardcoded Credentials Vulnerability
BID:100806
Info
SAP Point of Sale Store Manager Hardcoded Credentials Vulnerability
| Bugtraq ID: | 100806 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 12 2017 12:00AM |
| Updated: | Sep 12 2017 12:00AM |
| Credit: | The vendor reported this issue. |
| Vulnerable: |
SAP Point of Sale 0 |
| Not Vulnerable: | |
Discussion
SAP Point of Sale Store Manager Hardcoded Credentials Vulnerability
SAP Point of Sale Store Manager is prone to a hard-coded credentials vulnerability.
An attacker can exploit this issue to gain unauthorized access to the affected application.
SAP Point of Sale Store Manager is prone to a hard-coded credentials vulnerability.
An attacker can exploit this issue to gain unauthorized access to the affected application.
Exploit / POC
SAP Point of Sale Store Manager Hardcoded Credentials Vulnerability
Attackers can use standard, readily available tools to exploit this issue.
Attackers can use standard, readily available tools to exploit this issue.
Solution / Fix
SAP Point of Sale Store Manager Hardcoded Credentials Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
SAP Point of Sale Store Manager Hardcoded Credentials Vulnerability
References:
References:
- SAP Homepage (SAP)
- SAP Security Note 2528596 (SAP)