SAP DB web-tools Multiple Vulnerabilities
BID:9051
Info
SAP DB web-tools Multiple Vulnerabilities
| Bugtraq ID: | 9051 |
| Class: | Unknown |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Nov 17 2003 12:00AM |
| Updated: | Nov 17 2003 12:00AM |
| Credit: | Discovery of these issues is credited to Ollie Whitehouse of @stake. |
| Vulnerable: |
SAP DB 7.4.3 .7 Beta SAP DB 7.4.3 SAP DB 7.4 SAP DB 7.3 .29 SAP DB 7.3 .00 |
| Not Vulnerable: |
SAP DB 7.4 .03.30 |
Discussion
SAP DB web-tools Multiple Vulnerabilities
SAP DB has been prone to multiple vulnerabilities in the web server (web-tools) provided with the software. These issues may cumulatively allow for information disclosure, directory traversal, authentication bypass, and arbitrary code execution via buffer overflows.
SAP DB has been prone to multiple vulnerabilities in the web server (web-tools) provided with the software. These issues may cumulatively allow for information disclosure, directory traversal, authentication bypass, and arbitrary code execution via buffer overflows.
Exploit / POC
SAP DB web-tools Multiple Vulnerabilities
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
SAP DB web-tools Multiple Vulnerabilities
Solution:
The vendor has released SAP DB 7.4.03.30 to address these issues. Users should contact the vendor to obtain upgrades.
Solution:
The vendor has released SAP DB 7.4.03.30 to address these issues. Users should contact the vendor to obtain upgrades.
References
SAP DB web-tools Multiple Vulnerabilities
References:
References:
- SAP DB Home Page (SAP)
- SAP DB Software Packages (SAP)