The Security Audit Log facility in SAP Enhancement Package (EHP) 6 for SAP ERP 6.0 allows remote attackers to modify or delete arbitrary log classes via unspecified vectors. NOTE: some of these details are obtained from third party information.
References
Configurations
Configuration 1 (hide)
AND |
|
History
21 Nov 2024, 02:06
Type | Values Removed | Values Added |
---|---|---|
References | () http://secunia.com/advisories/57741 - Vendor Advisory | |
References | () http://www.onapsis.com/get.php?resid=adv_onapsis-2014-002 - | |
References | () http://www.onapsis.com/research-advisories.php - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/92334 - | |
References | () https://service.sap.com/sap/support/notes/1926485 - |
Information
Published : 2014-04-10 20:55
Updated : 2024-11-21 02:06
NVD link : CVE-2014-2748
Mitre link : CVE-2014-2748
CVE.ORG link : CVE-2014-2748
JSON object : View
Products Affected
sap
- enhancement_package
- erp
CWE
CWE-264
Permissions, Privileges, and Access Controls