CVE-2019-0312
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Several web pages provided SAP NetWeaver Process Integration (versions: SAP_XIESR: 7.10 to 7.11, 7.20, 7.30, 7.31, 7.40, 7.50 and SAP_XITOOL: 7.10 to 7.11, 7.30, 7.31, 7.40, 7.50) are not password protected. An attacker could access landscape information like host names, ports or other technical data in the absence of restrictive firewall and port settings.
Varias páginas web proporcionadas SAP NetWeaver Process Integration (versiones: SAP_XIESR: 7.10 a 7.11, 7.20, 7.30, 7.31, 7.40, 7.50 y SAP_XITOOL: 7.10 a 7.11, 7.30, 7.31, 7.40, 7.50) no están protegidas con contraseña. Un atacante podría acceder a información horizontal como nombres de host, puertos u otros datos técnicos en ausencia de cortafuegos y configuración de puertos restrictivos
CVSS Scores
SSVC
- Decision:-
Timeline
- 2018-11-26 CVE Reserved
- 2019-06-12 CVE Published
- 2023-03-08 EPSS Updated
- 2024-08-04 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-306: Missing Authentication for Critical Function
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://wiki.scn.sap.com/wiki/pages/viewpage.action?pageId=521864242 | 2020-08-24 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Sap Search vendor "Sap" | Netweaver Process Integration Search vendor "Sap" for product "Netweaver Process Integration" | 7.10 Search vendor "Sap" for product "Netweaver Process Integration" and version "7.10" | - |
Affected
| ||||||
Sap Search vendor "Sap" | Netweaver Process Integration Search vendor "Sap" for product "Netweaver Process Integration" | 7.11 Search vendor "Sap" for product "Netweaver Process Integration" and version "7.11" | - |
Affected
| ||||||
Sap Search vendor "Sap" | Netweaver Process Integration Search vendor "Sap" for product "Netweaver Process Integration" | 7.20 Search vendor "Sap" for product "Netweaver Process Integration" and version "7.20" | - |
Affected
| ||||||
Sap Search vendor "Sap" | Netweaver Process Integration Search vendor "Sap" for product "Netweaver Process Integration" | 7.30 Search vendor "Sap" for product "Netweaver Process Integration" and version "7.30" | - |
Affected
| ||||||
Sap Search vendor "Sap" | Netweaver Process Integration Search vendor "Sap" for product "Netweaver Process Integration" | 7.31 Search vendor "Sap" for product "Netweaver Process Integration" and version "7.31" | - |
Affected
| ||||||
Sap Search vendor "Sap" | Netweaver Process Integration Search vendor "Sap" for product "Netweaver Process Integration" | 7.40 Search vendor "Sap" for product "Netweaver Process Integration" and version "7.40" | - |
Affected
| ||||||
Sap Search vendor "Sap" | Netweaver Process Integration Search vendor "Sap" for product "Netweaver Process Integration" | 7.50 Search vendor "Sap" for product "Netweaver Process Integration" and version "7.50" | - |
Affected
|