CVE Vulnerabilities

CVE-2019-0363

Published: Sep 10, 2019 | Modified: Aug 24, 2020
CVSS 3.x
7.1
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:H
CVSS 2.x
5.5 MEDIUM
AV:N/AC:L/Au:S/C:P/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu

Attackers may misuse an HTTP/REST endpoint of SAP HANA Extended Application Services (Advanced model), before version 1.0.118, to overload the server or retrieve information about internal network ports.

Affected Software

Name Vendor Start Version End Version
Hana_extended_application_services Sap * 1.0.118 (excluding)

References