SAP NetWeaver Process Integration CVE-2019-0282 Information Disclosure Vulnerability
BID:107801
Info
SAP NetWeaver Process Integration CVE-2019-0282 Information Disclosure Vulnerability
| Bugtraq ID: | 107801 |
| Class: | Design Error |
| CVE: |
CVE-2019-0282 |
| Remote: | Yes |
| Local: | No |
| Published: | Apr 09 2019 12:00AM |
| Updated: | Apr 09 2019 12:00AM |
| Credit: | The vendor reported the issue. |
| Vulnerable: |
SAP NetWeaver Process Integration 750 SAP NetWeaver Process Integration 740 SAP NetWeaver Process Integration 731 SAP NetWeaver Process Integration 730 SAP NetWeaver Process Integration 711 SAP NetWeaver Process Integration 710 |
| Not Vulnerable: | |
Discussion
SAP NetWeaver Process Integration CVE-2019-0282 Information Disclosure Vulnerability
SAP NetWeaver Process Integration is prone to an information-disclosure vulnerability.
Attackers can exploit this issue to obtain sensitive information that may aid in launching further attacks.
SAP NetWeaver Process Integration (Runtime Workbench) versions 710 through 711, 730, 731, 740, and 750 are vulnerable; other versions may also be affected.
SAP NetWeaver Process Integration is prone to an information-disclosure vulnerability.
Attackers can exploit this issue to obtain sensitive information that may aid in launching further attacks.
SAP NetWeaver Process Integration (Runtime Workbench) versions 710 through 711, 730, 731, 740, and 750 are vulnerable; other versions may also be affected.
Exploit / POC
SAP NetWeaver Process Integration CVE-2019-0282 Information Disclosure Vulnerability
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
SAP NetWeaver Process Integration CVE-2019-0282 Information Disclosure Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
SAP NetWeaver Process Integration CVE-2019-0282 Information Disclosure Vulnerability
References:
References:
- SAP Homepage (SAP)
- SAP Security Note 2742758 (SAP)
- SAP Security Patch Day �?? April 2019 (SAP)