An unspecified function in SAP TREX 7.10 Revision 63 allows remote attackers to execute arbitrary OS commands via unknown vectors, aka SAP Security Note 2203591.
References
Link | Resource |
---|---|
http://onapsis.com/research/security-advisories/sap-trex-remote-command-execution | Permissions Required Third Party Advisory |
http://packetstormsecurity.com/files/138436/SAP-TREX-7.10-Revision-63-Remote-Command-Execution.html | Third Party Advisory VDB Entry |
http://seclists.org/fulldisclosure/2016/Aug/113 | Third Party Advisory |
http://seclists.org/fulldisclosure/2016/Aug/85 | Third Party Advisory |
http://onapsis.com/research/security-advisories/sap-trex-remote-command-execution | Permissions Required Third Party Advisory |
http://packetstormsecurity.com/files/138436/SAP-TREX-7.10-Revision-63-Remote-Command-Execution.html | Third Party Advisory VDB Entry |
http://seclists.org/fulldisclosure/2016/Aug/113 | Third Party Advisory |
http://seclists.org/fulldisclosure/2016/Aug/85 | Third Party Advisory |
Configurations
History
21 Nov 2024, 02:55
Type | Values Removed | Values Added |
---|---|---|
References | () http://onapsis.com/research/security-advisories/sap-trex-remote-command-execution - Permissions Required, Third Party Advisory | |
References | () http://packetstormsecurity.com/files/138436/SAP-TREX-7.10-Revision-63-Remote-Command-Execution.html - Third Party Advisory, VDB Entry | |
References | () http://seclists.org/fulldisclosure/2016/Aug/113 - Third Party Advisory | |
References | () http://seclists.org/fulldisclosure/2016/Aug/85 - Third Party Advisory |
Information
Published : 2016-09-27 15:59
Updated : 2024-11-21 02:55
NVD link : CVE-2016-6137
Mitre link : CVE-2016-6137
CVE.ORG link : CVE-2016-6137
JSON object : View
Products Affected
sap
- trex
CWE