SAP Profile Maintenance does not properly restrict access, which allows remote authenticated users to obtain sensitive information via an unspecified RFC function, related to SAP Solution Manager 7.1.
References
Configurations
History
21 Nov 2024, 02:07
Type | Values Removed | Values Added |
---|---|---|
References | () http://scn.sap.com/docs/DOC-8218 - | |
References | () http://seclists.org/fulldisclosure/2014/Apr/300 - | |
References | () http://www.onapsis.com/resources/get.php?resid=adv_onapsis-2014-007 - | |
References | () http://www.securityfocus.com/bid/67103 - | |
References | () https://service.sap.com/sap/support/notes/1917381 - |
Information
Published : 2014-04-30 14:22
Updated : 2024-11-21 02:07
NVD link : CVE-2014-3131
Mitre link : CVE-2014-3131
CVE.ORG link : CVE-2014-3131
JSON object : View
Products Affected
sap
- profile_maintenance
CWE
CWE-264
Permissions, Privileges, and Access Controls