ID

VAR-200804-0326


CVE

CVE-2008-1846


TITLE

SAP NetWeaver Filesystem Feedbacks Cross-Site Scripting Vulnerability

Trust: 0.9

sources: BID: 28699 // CNNVD: CNNVD-200804-252

DESCRIPTION

The default configuration of SAP NetWeaver before 7.0 SP15 does not enable the "Always Use Secure HTML Editor" (aka Editor Security or Secure Editing) parameter, which allows remote attackers to conduct cross-site scripting (XSS) attacks by entering feedback for a file. SAP NetWeaver is prone to a cross-site scripting vulnerability because the application fails to sufficiently sanitize user-supplied input. An attacker may leverage this issue to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site. This may let the attacker steal cookie-based authentication credentials and launch other attacks

Trust: 1.89

sources: NVD: CVE-2008-1846 // JVNDB: JVNDB-2008-005695 // BID: 28699

AFFECTED PRODUCTS

vendor:sapmodel:netweaverscope:lteversion:7.0

Trust: 1.0

vendor:sapmodel:netweaverscope:ltversion:7.0 sp15

Trust: 0.8

vendor:sapmodel:netweaverscope:eqversion:7.0

Trust: 0.6

vendor:sapmodel:netweaver application server sp17scope:eqversion:6.40

Trust: 0.3

vendor:sapmodel:netweaver sp8scope:eqversion:7.0

Trust: 0.3

vendor:sapmodel:netweaver sp15scope:neversion:7.0

Trust: 0.3

sources: BID: 28699 // JVNDB: JVNDB-2008-005695 // CNNVD: CNNVD-200804-252 // NVD: CVE-2008-1846

CVSS

SEVERITY

CVSSV2

CVSSV3

nvd@nist.gov: CVE-2008-1846
value: MEDIUM

Trust: 1.0

NVD: CVE-2008-1846
value: MEDIUM

Trust: 0.8

CNNVD: CNNVD-200804-252
value: MEDIUM

Trust: 0.6

nvd@nist.gov: CVE-2008-1846
severity: MEDIUM
baseScore: 4.3
vectorString: AV:N/AC:M/AU:N/C:N/I:P/A:N
accessVector: NETWORK
accessComplexity: MEDIUM
authentication: NONE
confidentialityImpact: NONE
integrityImpact: PARTIAL
availabilityImpact: NONE
exploitabilityScore: 8.6
impactScore: 2.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 1.8

sources: JVNDB: JVNDB-2008-005695 // CNNVD: CNNVD-200804-252 // NVD: CVE-2008-1846

PROBLEMTYPE DATA

problemtype:CWE-79

Trust: 1.8

sources: JVNDB: JVNDB-2008-005695 // NVD: CVE-2008-1846

THREAT TYPE

remote

Trust: 0.6

sources: CNNVD: CNNVD-200804-252

TYPE

XSS

Trust: 0.6

sources: CNNVD: CNNVD-200804-252

CONFIGURATIONS

sources: JVNDB: JVNDB-2008-005695

PATCH

title:NetWeaverurl:http://scn.sap.com/community/netweaver

Trust: 0.8

sources: JVNDB: JVNDB-2008-005695

EXTERNAL IDS

db:NVDid:CVE-2008-1846

Trust: 2.7

db:BIDid:28699

Trust: 1.9

db:SREASONid:3812

Trust: 1.6

db:SECTRACKid:1019822

Trust: 1.6

db:JVNDBid:JVNDB-2008-005695

Trust: 0.8

db:XFid:41735

Trust: 0.6

db:BUGTRAQid:20080409 SAP NETWEAVER 6.40-7.0 CROSS-SITE-SCRIPTING

Trust: 0.6

db:CNNVDid:CNNVD-200804-252

Trust: 0.6

sources: BID: 28699 // JVNDB: JVNDB-2008-005695 // CNNVD: CNNVD-200804-252 // NVD: CVE-2008-1846

REFERENCES

url:http://www.aitsec.com/vulnerability-sap-netweaver-6.40-7.0-cross-site-scripting.php

Trust: 1.9

url:http://www.securitytracker.com/id?1019822

Trust: 1.6

url:http://www.securityfocus.com/bid/28699

Trust: 1.6

url:http://securityreason.com/securityalert/3812

Trust: 1.6

url:https://exchange.xforce.ibmcloud.com/vulnerabilities/41735

Trust: 1.0

url:http://www.securityfocus.com/archive/1/490625/100/0/threaded

Trust: 1.0

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2008-1846

Trust: 0.8

url:http://web.nvd.nist.gov/view/vuln/detail?vulnid=cve-2008-1846

Trust: 0.8

url:http://xforce.iss.net/xforce/xfdb/41735

Trust: 0.6

url:http://www.securityfocus.com/archive/1/archive/1/490625/100/0/threaded

Trust: 0.6

url:http://help.sap.com/saphelp_nw70/helpdata/en/44/4cd511c6233f8ee10000000a1553f7/frameset.htm

Trust: 0.3

url:/archive/1/490625

Trust: 0.3

sources: BID: 28699 // JVNDB: JVNDB-2008-005695 // CNNVD: CNNVD-200804-252 // NVD: CVE-2008-1846

CREDITS

Jaime Blasco from Aitsec Information Technology Security

Trust: 0.9

sources: BID: 28699 // CNNVD: CNNVD-200804-252

SOURCES

db:BIDid:28699
db:JVNDBid:JVNDB-2008-005695
db:CNNVDid:CNNVD-200804-252
db:NVDid:CVE-2008-1846

LAST UPDATE DATE

2024-11-23T22:28:09.499000+00:00


SOURCES UPDATE DATE

db:BIDid:28699date:2015-05-07T17:30:00
db:JVNDBid:JVNDB-2008-005695date:2012-12-20T00:00:00
db:CNNVDid:CNNVD-200804-252date:2009-01-29T00:00:00
db:NVDid:CVE-2008-1846date:2024-11-21T00:45:29.393

SOURCES RELEASE DATE

db:BIDid:28699date:2008-04-09T00:00:00
db:JVNDBid:JVNDB-2008-005695date:2012-12-20T00:00:00
db:CNNVDid:CNNVD-200804-252date:2008-04-16T00:00:00
db:NVDid:CVE-2008-1846date:2008-04-16T17:05:00