ID

VAR-201106-0305


TITLE

SAP NetWeaver Denial of service vulnerability

Trust: 0.8

sources: IVD: bea17582-1f91-11e6-abef-000c29c66e3d // CNVD: CNVD-2011-2388

DESCRIPTION

SAP NetWeaver is the technical foundation for SAP Business Suite solutions, SAP xApps composite applications, partner solutions, and custom applications. There is an error in the authentication mechanism in the J2EE engine, and an attacker can bypass the authentication mechanism for a denial of service attack

Trust: 0.72

sources: CNVD: CNVD-2011-2388 // IVD: bea17582-1f91-11e6-abef-000c29c66e3d

IOT TAXONOMY

category:['ICS']sub_category: -

Trust: 0.8

sources: IVD: bea17582-1f91-11e6-abef-000c29c66e3d // CNVD: CNVD-2011-2388

AFFECTED PRODUCTS

vendor:sapmodel:netweaverscope:eqversion:7.x

Trust: 0.8

sources: IVD: bea17582-1f91-11e6-abef-000c29c66e3d // CNVD: CNVD-2011-2388

CVSS

SEVERITY

CVSSV2

CVSSV3

IVD: bea17582-1f91-11e6-abef-000c29c66e3d
value: MEDIUM

Trust: 0.2

IVD: bea17582-1f91-11e6-abef-000c29c66e3d
severity: NONE
baseScore: NONE
vectorString: NONE
accessVector: NONE
accessComplexity: NONE
authentication: NONE
confidentialityImpact: NONE
integrityImpact: NONE
availabilityImpact: NONE
exploitabilityScore: NONE
impactScore: NONE
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: UNKNOWN

Trust: 0.2

sources: IVD: bea17582-1f91-11e6-abef-000c29c66e3d

TYPE

Denial of service

Trust: 0.2

sources: IVD: bea17582-1f91-11e6-abef-000c29c66e3d

PATCH

title:Patch for SAP NetWeaver Denial of Service Vulnerabilityurl:https://www.cnvd.org.cn/patchinfo/show/4229

Trust: 0.6

sources: CNVD: CNVD-2011-2388

EXTERNAL IDS

db:CNVDid:CNVD-2011-2388

Trust: 0.8

db:IVDid:BEA17582-1F91-11E6-ABEF-000C29C66E3D

Trust: 0.2

sources: IVD: bea17582-1f91-11e6-abef-000c29c66e3d // CNVD: CNVD-2011-2388

REFERENCES

url:http://dsecrg.com/pages/vul/show.php?id=326

Trust: 0.6

sources: CNVD: CNVD-2011-2388

SOURCES

db:IVDid:bea17582-1f91-11e6-abef-000c29c66e3d
db:CNVDid:CNVD-2011-2388

LAST UPDATE DATE

2022-05-17T02:08:17.630000+00:00


SOURCES UPDATE DATE

db:CNVDid:CNVD-2011-2388date:2011-06-22T00:00:00

SOURCES RELEASE DATE

db:IVDid:bea17582-1f91-11e6-abef-000c29c66e3ddate:2011-06-22T00:00:00
db:CNVDid:CNVD-2011-2388date:2011-06-22T00:00:00