The Backup Server component in SAP Sybase ASE 15.7 before SP51 allows remote attackers to bypass access restrictions and perform database dumps by leveraging failure to validate credentials, aka SAP Security Note 1927859.
References
Link | Resource |
---|---|
http://blog.spiderlabs.com/2014/01/sap-sybase-ase-157-security-updates.html | Third Party Advisory |
https://www3.trustwave.com/spiderlabs/advisories/TWSL2013-035.txt | Third Party Advisory |
http://blog.spiderlabs.com/2014/01/sap-sybase-ase-157-security-updates.html | Third Party Advisory |
https://www3.trustwave.com/spiderlabs/advisories/TWSL2013-035.txt | Third Party Advisory |
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 02:00
Type | Values Removed | Values Added |
---|---|---|
References | () http://blog.spiderlabs.com/2014/01/sap-sybase-ase-157-security-updates.html - Third Party Advisory | |
References | () https://www3.trustwave.com/spiderlabs/advisories/TWSL2013-035.txt - Third Party Advisory |
Information
Published : 2018-04-24 20:29
Updated : 2024-11-21 02:00
NVD link : CVE-2013-7245
Mitre link : CVE-2013-7245
CVE.ORG link : CVE-2013-7245
JSON object : View
Products Affected
sybase
- adaptive_server_enterprise
CWE
CWE-285
Improper Authorization