CVE-2014-3131

SAP Profile Maintenance does not properly restrict access, which allows remote authenticated users to obtain sensitive information via an unspecified RFC function, related to SAP Solution Manager 7.1.
Configurations

Configuration 1 (hide)

cpe:2.3:a:sap:profile_maintenance:-:*:*:*:*:*:*:*

History

21 Nov 2024, 02:07

Type Values Removed Values Added
References () http://scn.sap.com/docs/DOC-8218 - () http://scn.sap.com/docs/DOC-8218 -
References () http://seclists.org/fulldisclosure/2014/Apr/300 - () http://seclists.org/fulldisclosure/2014/Apr/300 -
References () http://www.onapsis.com/resources/get.php?resid=adv_onapsis-2014-007 - () http://www.onapsis.com/resources/get.php?resid=adv_onapsis-2014-007 -
References () http://www.securityfocus.com/bid/67103 - () http://www.securityfocus.com/bid/67103 -
References () https://service.sap.com/sap/support/notes/1917381 - () https://service.sap.com/sap/support/notes/1917381 -

Information

Published : 2014-04-30 14:22

Updated : 2024-11-21 02:07


NVD link : CVE-2014-3131

Mitre link : CVE-2014-3131

CVE.ORG link : CVE-2014-3131


JSON object : View

Products Affected

sap

  • profile_maintenance
CWE
CWE-264

Permissions, Privileges, and Access Controls