CVE Vulnerabilities

CVE-2011-5154

Published: Sep 06, 2012 | Modified: Jan 15, 2021
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.9 MEDIUM
AV:L/AC:M/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

Multiple untrusted search path vulnerabilities in (1) SAPGui.exe and (2) BExAnalyzer.exe in SAP GUI 6.4 through 7.2 allow local users to gain privileges via a Trojan horse MFC80LOC.DLL file in the current working directory, as demonstrated by a directory that contains a .sap file. NOTE: some of these details are obtained from third party information.

Affected Software

Name Vendor Start Version End Version
Graphical_user_interface Sap 6.4 (including) 6.4 (including)
Graphical_user_interface Sap 7.2 (including) 7.2 (including)

References